{
  "CVE_data_type" : "CVE",
  "CVE_data_format" : "MITRE",
  "CVE_data_version" : "4.0",
  "CVE_data_numberOfCVEs" : "1464",
  "CVE_data_timestamp" : "2020-09-17T00:00Z",
  "CVE_Items" : [ {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2008-1925",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "inspircd",
            "product" : {
              "product_data" : [ {
                "product_name" : "inspircd",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.1.17",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://secunia.com/advisories/29610",
          "name" : "29610",
          "refsource" : "SECUNIA",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://secunia.com/advisories/30163",
          "name" : "30163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-200805-08.xml",
          "name" : "GLSA-200805-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.inspircd.org/bugtrack/view_bug.php?bug_id=438",
          "name" : "http://www.inspircd.org/bugtrack/view_bug.php?bug_id=438",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://www.inspircd.org/forum/showthread.php?t=2945",
          "name" : "http://www.inspircd.org/forum/showthread.php?t=2945",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2008/04/22/3",
          "name" : "[oss-security] 20080422 CVE Request: inspircd",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/28506",
          "name" : "28506",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.vupen.com/english/advisories/2008/1041/references",
          "name" : "ADV-2008-1041",
          "refsource" : "VUPEN",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/41543",
          "name" : "inspircd-multiple-dos(41543)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Buffer overflow in InspIRCd before 1.1.18, when using the namesx and uhnames modules, allows remote attackers to cause a denial of service (daemon crash) via a large number of channel users with crafted nicknames, idents, and long hostnames."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:inspircd:inspircd:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "1.1.17"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2008-04-24T05:05Z",
    "lastModifiedDate" : "2020-09-14T12:33Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2009-3080",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "virtualization",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.4",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "fedora",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.06",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "4.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "linux",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux_kernel",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.6.31.6",
                    "version_affected" : "<="
                  }, {
                    "version_value" : "2.6.32",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "suse",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "vmware",
            "product" : {
              "product_data" : [ {
                "product_name" : "esx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.5",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-129"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=690e744869f3262855b83b4fb59199cf142765b0",
          "name" : "http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=690e744869f3262855b83b4fb59199cf142765b0",
          "refsource" : "CONFIRM",
          "tags" : [ "Mailing List", "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2009-12/msg00002.html",
          "name" : "SUSE-SA:2009:061",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2009-12/msg00005.html",
          "name" : "SUSE-SA:2009:064",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00000.html",
          "name" : "SUSE-SA:2010:001",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00005.html",
          "name" : "SUSE-SA:2010:005",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00007.html",
          "name" : "SUSE-SA:2010:013",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://secunia.com/advisories/37435",
          "name" : "37435",
          "refsource" : "SECUNIA",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://secunia.com/advisories/37720",
          "name" : "37720",
          "refsource" : "SECUNIA",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://secunia.com/advisories/37909",
          "name" : "37909",
          "refsource" : "SECUNIA",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://secunia.com/advisories/38017",
          "name" : "38017",
          "refsource" : "SECUNIA",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://secunia.com/advisories/38276",
          "name" : "38276",
          "refsource" : "SECUNIA",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://support.avaya.com/css/P8/documents/100073666",
          "name" : "http://support.avaya.com/css/P8/documents/100073666",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2010/dsa-2005",
          "name" : "DSA-2005",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.32-rc8",
          "name" : "http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.32-rc8",
          "refsource" : "CONFIRM",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2010:030",
          "name" : "MDVSA-2010:030",
          "refsource" : "MANDRIVA",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2011:051",
          "name" : "MDVSA-2011:051",
          "refsource" : "MANDRIVA",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://www.redhat.com/support/errata/RHSA-2010-0041.html",
          "name" : "RHSA-2010:0041",
          "refsource" : "REDHAT",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://www.redhat.com/support/errata/RHSA-2010-0882.html",
          "name" : "RHSA-2010:0882",
          "refsource" : "REDHAT",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/37068",
          "name" : "37068",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/usn-864-1",
          "name" : "USN-864-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2011-0009.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2011-0009.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10989",
          "name" : "oval:org.mitre.oval:def:10989",
          "refsource" : "OVAL",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12862",
          "name" : "oval:org.mitre.oval:def:12862",
          "refsource" : "OVAL",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7101",
          "name" : "oval:org.mitre.oval:def:7101",
          "refsource" : "OVAL",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://rhn.redhat.com/errata/RHSA-2010-0046.html",
          "name" : "RHSA-2010:0046",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://rhn.redhat.com/errata/RHSA-2010-0095.html",
          "name" : "RHSA-2010:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.redhat.com/archives/fedora-package-announce/2009-December/msg00777.html",
          "name" : "FEDORA-2009-13098",
          "refsource" : "FEDORA",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Array index error in the gdth_read_event function in drivers/scsi/gdth.c in the Linux kernel before 2.6.32-rc8 allows local users to cause a denial of service or possibly gain privileges via a negative event index in an IOCTL request."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.6.31.6"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:linux:linux_kernel:2.6.32:-:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:linux:linux_kernel:2.6.32:rc1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:linux:linux_kernel:2.6.32:rc3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:linux:linux_kernel:2.6.32:rc4:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:linux:linux_kernel:2.6.32:rc5:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:11.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:11.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:10:sp2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:10:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:10:sp2:*:*:-:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:10:sp3:*:*:-:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:8.04:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:8.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:9.04:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:9.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:vmware:esx:3.5:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:virtualization:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:5.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_workstation:5.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:fedora:10:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2009-11-20T17:30Z",
    "lastModifiedDate" : "2020-09-09T12:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2009-5030",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://code.google.com/p/openjpeg/issues/detail?id=5",
          "name" : "http://code.google.com/p/openjpeg/issues/detail?id=5",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://code.google.com/p/openjpeg/source/detail?r=1703",
          "name" : "http://code.google.com/p/openjpeg/source/detail?r=1703",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2012-June/082923.html",
          "name" : "FEDORA-2012-9628",
          "refsource" : "FEDORA",
          "tags" : [ ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2012-June/083105.html",
          "name" : "FEDORA-2012-9602",
          "refsource" : "FEDORA",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2012-1068.html",
          "name" : "RHSA-2012:1068",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/48781",
          "name" : "48781",
          "refsource" : "SECUNIA",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://secunia.com/advisories/49913",
          "name" : "49913",
          "refsource" : "SECUNIA",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2012:104",
          "name" : "MDVSA-2012:104",
          "refsource" : "MANDRIVA",
          "tags" : [ ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2012/04/13/5",
          "name" : "[oss-security] 20120413 Re: CVE Request: Heap corruption in openjpeg",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/53012",
          "name" : "53012",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/74851",
          "name" : "openjpeg-tcdfreeencode-code-execution(74851)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://groups.google.com/forum/#!topic/openjpeg/DLVrRKbTeI0/discussion",
          "name" : "https://groups.google.com/forum/#!topic/openjpeg/DLVrRKbTeI0/discussion",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The tcd_free_encode function in tcd.c in OpenJPEG 1.3 through 1.5 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted tile information in a Gray16 TIFF image, which causes insufficient memory to be allocated and leads to an \"invalid free.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.5:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2012-07-18T22:55Z",
    "lastModifiedDate" : "2020-09-09T19:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2009-5063",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "libpng",
            "product" : {
              "product_data" : [ {
                "product_name" : "libpng",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.2.38",
                    "version_affected" : "<="
                  }, {
                    "version_value" : "1.2.39",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-401"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://libpng.git.sourceforge.net/git/gitweb.cgi?p=libpng/libpng;a=commitdiff;h=948ee23a2a400672b1751cfc646a7467741e9b2e#patch18",
          "name" : "http://libpng.git.sourceforge.net/git/gitweb.cgi?p=libpng/libpng;a=commitdiff;h=948ee23a2a400672b1751cfc646a7467741e9b2e#patch18",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://secunia.com/advisories/49660",
          "name" : "49660",
          "refsource" : "SECUNIA",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201206-15.xml",
          "name" : "GLSA-201206-15",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2011/03/22/7",
          "name" : "[oss-security] 20110322 CVE Request: libpng memory leak",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2011/03/28/6",
          "name" : "[oss-security] 20110328 Re: CVE Request: libpng memory leak",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Memory leak in the embedded_profile_len function in pngwutil.c in libpng before 1.2.39beta5 allows context-dependent attackers to cause a denial of service (memory leak or segmentation fault) via a JPEG image containing an iCCP chunk with a negative embedded profile length.  NOTE: this is due to an incomplete fix for CVE-2006-7244."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:libpng:libpng:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "1.2.38"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:libpng:libpng:1.2.39:-:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:libpng:libpng:1.2.39:beta1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:libpng:libpng:1.2.39:beta2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:libpng:libpng:1.2.39:beta3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:libpng:libpng:1.2.39:beta4:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2011-08-31T23:55Z",
    "lastModifiedDate" : "2020-09-09T14:51Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2011-3970",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "google",
            "product" : {
              "product_data" : [ {
                "product_name" : "chrome",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "0.1.38.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.1.38.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.1.38.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.1.40.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.1.42.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.1.42.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.2.149.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.2.149.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.2.149.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.2.152.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.2.153.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.3.154.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.3.154.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.4.154.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.4.154.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.4.154.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.4.154.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.154.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.154.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.154.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.154.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.154.46",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.154.48",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.154.52",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.154.53",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.154.59",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.154.64",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.154.65",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.156.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.157.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.157.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.158.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.159.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.169.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.169.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.170.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.172",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.172.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.172.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.172.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.172.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.172.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.172.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.172.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.172.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.172.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.182.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.190.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.193.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.195.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.195.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.195.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.195.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.195.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.195.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.195.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.195.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.195.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.195.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.212.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.212.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.221.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.222.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.222.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.222.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.222.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.223.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.223.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.223.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.223.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.223.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.223.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.223.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.223.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.224.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.229.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.235.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.236.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.237.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.237.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.239.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.240.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.241.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.242.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.243.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.244.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.245.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.245.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.246.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.247.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.248.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.45",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.46",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.47",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.48",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.49",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.50",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.51",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.52",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.53",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.54",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.55",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.56",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.57",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.58",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.59",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.60",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.61",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.62",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.63",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.64",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.65",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.66",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.67",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.68",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.69",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.70",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.71",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.72",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.73",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.74",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.75",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.76",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.77",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.78",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.79",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.80",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.81",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.82",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.249.89",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.250.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.250.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.251.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.252.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.254.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.255.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.256.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.257.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.258.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.259.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.260.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.261.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.262.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.263.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.264.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.265.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.266.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.267.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.268.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.269.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.271.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.272.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.275.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.275.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.276.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.277.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.278.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.286.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.287.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.288.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.288.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.289.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.290.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.292.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.294.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.295.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.296.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.299.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.300.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.301.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.302.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.302.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.302.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.302.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.303.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.304.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.305.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1001",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1004",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1006",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1007",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1008",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1009",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1010",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1011",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1012",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1013",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1014",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1015",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1016",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1017",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1018",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1019",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1020",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1021",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1022",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1023",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1024",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1025",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1026",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1027",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1028",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1029",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1030",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1031",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1032",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1033",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1034",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1035",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1036",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1037",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1038",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1039",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1040",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1041",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1042",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1043",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1044",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1045",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1046",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1047",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1048",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1049",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1050",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1051",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1052",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1053",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1054",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1055",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1056",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1057",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1058",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1059",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1060",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1061",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1062",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1063",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.249.1064",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.306.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.306.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.307.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.307.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.307.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.307.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.307.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.307.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.307.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.307.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.307.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.307.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.308.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.309.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.313.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.314.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.314.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.315.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.316.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.317.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.317.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.317.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.318.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.319.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.320.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.321.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.322.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.322.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.322.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.323.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.324.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.325.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.326.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.327.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.328.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.329.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.330.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.332.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.333.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.334.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.335.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.335.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.335.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.335.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.335.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.336.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.337.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.338.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.339.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.340.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.341.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.342.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.342.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.342.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.342.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.342.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.342.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.342.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.342.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.342.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.342.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.343.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.344.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.345.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.346.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.347.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.348.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.349.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.350.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.350.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.351.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.353.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.354.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.354.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.355.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.356.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.356.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.356.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.357.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.358.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.359.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.360.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.360.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.360.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.360.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.361.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.362.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.363.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.364.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.365.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.366.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.366.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.366.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.366.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.366.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.367.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.368.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.369.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.369.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.369.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.370.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.371.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.372.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.373.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.374.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.45",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.46",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.47",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.48",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.49",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.50",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.51",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.52",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.53",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.54",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.55",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.56",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.57",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.58",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.59",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.60",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.61",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.62",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.63",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.64",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.65",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.66",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.67",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.68",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.69",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.70",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.71",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.72",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.73",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.74",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.75",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.76",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.77",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.78",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.79",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.80",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.81",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.82",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.83",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.84",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.85",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.86",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.87",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.88",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.89",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.90",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.91",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.92",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.93",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.94",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.95",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.96",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.97",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.98",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.99",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.125",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.126",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.375.127",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.376.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.378.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.379.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.380.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.381.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.382.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.382.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.383.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.384.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.385.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.386.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.387.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.390.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.391.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.392.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.393.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.394.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.395.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.396.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.397.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.398.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.399.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.400.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.401.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.401.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.403.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.404.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.404.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.404.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.405.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.406.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.407.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.408.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.408.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.408.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.408.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.408.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.408.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.408.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.408.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.408.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.408.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.408.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.409.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.410.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.411.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.412.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.413.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.414.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.415.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.415.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.416.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.416.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.417.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.418.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.418.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.418.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.418.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.418.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.418.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.418.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.418.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.418.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.418.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.419.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.421.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.422.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.423.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.424.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.425.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.426.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.427.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.428.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.430.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.431.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.432.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.433.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.434.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.435.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.436.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.437.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.437.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.437.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.437.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.438.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.440.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.441.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.443.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.444.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.445.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.445.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.446.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.447.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.447.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.447.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.449.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.450.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.450.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.450.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.450.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.450.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.451.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.452.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.452.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.453.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.453.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.454.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.455.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.456.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.457.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.458.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.458.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.458.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.459.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.460.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.461.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.462.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.464.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.465.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.465.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.466.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.466.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.466.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.466.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.466.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.466.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.466.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.467.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.469.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.470.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.471.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.45",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.46",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.47",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.48",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.49",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.50",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.51",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.52",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.53",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.54",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.55",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.56",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.57",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.58",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.59",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.60",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.61",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.62",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.472.63",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.473.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.474.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.475.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.476.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.477.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.478.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.479.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.480.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.481.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.482.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.483.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.484.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.485.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.486.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.487.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.488.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.489.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.490.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.490.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.491.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.492.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.493.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.494.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.495.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.495.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.496.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.497.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.498.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.499.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.499.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.500.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.500.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.503.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.503.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.504.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.505.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.506.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.507.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.507.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.507.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.507.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.509.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.510.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.511.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.511.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.511.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.512.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.513.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.514.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.514.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.515.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.516.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.517.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.518.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.519.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.520.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.521.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.522.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.524.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.525.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.526.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.528.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.529.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.529.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.529.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.530.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.531.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.531.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.531.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.535.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.535.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.536.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.536.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.536.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.536.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.536.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.537.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.538.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.539.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.540.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.541.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.542.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.544.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.547.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.547.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.548.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.549.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.550.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.551.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.551.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.45",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.47",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.48",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.49",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.50",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.51",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.52",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.100",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.101",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.102",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.103",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.104",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.105",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.200",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.201",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.202",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.203",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.204",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.205",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.206",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.207",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.208",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.209",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.210",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.211",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.212",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.213",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.214",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.215",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.216",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.217",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.218",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.219",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.220",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.221",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.222",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.223",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.224",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.225",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.226",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.227",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.228",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.229",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.230",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.231",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.232",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.233",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.234",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.235",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.237",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.300",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.301",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.302",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.303",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.304",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.305",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.306",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.307",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.308",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.309",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.310",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.311",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.312",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.313",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.315",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.316",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.317",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.318",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.319",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.320",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.321",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.322",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.323",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.324",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.325",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.326",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.327",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.328",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.329",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.330",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.331",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.332",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.333",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.334",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.335",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.336",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.337",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.338",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.339",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.340",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.341",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.342",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.343",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.552.344",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.553.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.554.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.555.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.556.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.557.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.558.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.559.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.560.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.561.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.562.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.563.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.564.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.565.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.566.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.567.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.568.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.569.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.570.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.570.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.571.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.572.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.572.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.573.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.574.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.575.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.576.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.577.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.578.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.579.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.580.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.581.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.582.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.583.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.584.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.585.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.586.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.587.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.587.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.588.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.589.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.590.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.591.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.592.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.593.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.594.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.595.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.596.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.45",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.46",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.47",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.54",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.55",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.56",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.57",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.58",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.59",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.60",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.62",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.63",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.64",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.65",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.66",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.67",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.68",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.69",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.70",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.71",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.72",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.73",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.74",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.75",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.76",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.77",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.78",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.79",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.80",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.81",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.82",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.83",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.84",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.85",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.86",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.88",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.90",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.92",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.94",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.96",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.97",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.98",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.99",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.100",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.101",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.102",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.106",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.597.107",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.598.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.599.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.600.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.601.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.602.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.603.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.603.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.603.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.604.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.605.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.606.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.607.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.608.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.609.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.610.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.611.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.611.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.612.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.612.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.612.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.612.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.613.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.614.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.615.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.616.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.617.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.618.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.619.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.620.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.621.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.622.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.622.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.623.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.624.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.625.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.626.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.627.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.628.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.629.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.630.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.631.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.632.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.633.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.634.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.634.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.635.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.636.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.638.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.638.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.639.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.640.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.642.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.642.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.642.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.643.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.644.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.645.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.646.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.647.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.45",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.49",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.54",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.56",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.59",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.62",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.66",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.68",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.70",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.72",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.76",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.79",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.82",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.84",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.87",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.90",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.101",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.103",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.105",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.107",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.114",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.116",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.118",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.119",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.120",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.121",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.122",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.123",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.124",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.125",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.126",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.127",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.128",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.129",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.130",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.131",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.132",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.133",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.134",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.135",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.151",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.201",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.203",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.204",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.648.205",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.649.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.650.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.651.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.652.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.653.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.654.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.655.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.656.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.657.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.658.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.658.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.659.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.660.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.661.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.662.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.663.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.664.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.665.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.666.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.667.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.667.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.667.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.667.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.668.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.669.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.670.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.671.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.672.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.672.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.672.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.673.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.674.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.675.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.676.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.677.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.678.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.679.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.680.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.681.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.682.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.683.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.684.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.685.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.686.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.686.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.686.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.686.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.687.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.687.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.688.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.689.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.690.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.690.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.691.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.692.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.693.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.694.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.695.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.45",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.46",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.47",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.48",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.49",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.50",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.51",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.52",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.53",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.54",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.55",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.56",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.57",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.58",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.59",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.60",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.61",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.62",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.63",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.64",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.65",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.66",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.67",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.68",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.69",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.70",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.71",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.72",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.696.77",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.697.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.698.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.699.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.700.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.701.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.702.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.702.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.702.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.703.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.704.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.705.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.706.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.707.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.708.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.709.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.710.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.711.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.712.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.713.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.714.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.715.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.716.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.717.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.718.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.719.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.719.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.720.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.721.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.721.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.722.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.723.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.723.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.724.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.725.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.726.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.727.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.728.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.729.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.730.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.731.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.732.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.733.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.734.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.735.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.736.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.737.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.738.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.739.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.740.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.741.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.45",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.46",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.47",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.48",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.49",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.50",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.51",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.52",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.53",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.54",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.55",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.56",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.57",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.58",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.59",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.60",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.61",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.63",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.64",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.65",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.66",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.67",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.68",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.69",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.70",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.71",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.72",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.73",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.74",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.75",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.77",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.82",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.91",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.92",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.93",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.94",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.100",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.105",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.111",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.112",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.113",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.114",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.115",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.120",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.121",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.122",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.123",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.742.124",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.743.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.744.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.745.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.746.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.747.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.748.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.749.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.750.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.751.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.752.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.753.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.754.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.755.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.756.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.757.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.758.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.759.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.760.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.761.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.761.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.762.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.762.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.763.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.764.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.765.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.766.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.767.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.767.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.768.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.769.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.770.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.771.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.772.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.773.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.774.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.775.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.775.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.775.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.775.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.776.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.776.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.777.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.777.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.777.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.777.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.777.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.777.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.777.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.778.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.779.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.780.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.781.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.45",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.46",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.47",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.48",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.49",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.50",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.51",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.52",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.53",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.55",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.56",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.81",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.82",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.83",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.84",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.85",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.86",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.87",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.88",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.89",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.90",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.91",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.92",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.93",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.94",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.95",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.96",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.97",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.98",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.99",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.100",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.101",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.102",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.103",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.104",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.105",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.106",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.107",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.108",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.109",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.112",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.210",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.211",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.212",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.213",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.214",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.215",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.216",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.217",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.218",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.219",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.220",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.237",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.782.238",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.783.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.784.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.785.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.786.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.787.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.788.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.789.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.790.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.791.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.792.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.793.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.794.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.795.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.796.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.797.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.798.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.799.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.800.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.801.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.802.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.803.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.804.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.805.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.806.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.807.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.808.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.809.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.810.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.811.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.812.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.813.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.814.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.815.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.816.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.818.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.819.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.820.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.821.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.822.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.823.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.824.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.825.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.826.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.827.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.827.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.827.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.829.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.830.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.831.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.832.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.833.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.834.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.86",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.87",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.88",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.89",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.90",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.91",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.92",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.93",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.94",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.95",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.96",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.97",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.98",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.99",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.100",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.101",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.102",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.103",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.104",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.105",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.106",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.107",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.108",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.109",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.110",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.111",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.112",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.113",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.114",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.115",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.116",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.117",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.118",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.119",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.120",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.121",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.122",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.123",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.124",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.125",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.126",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.127",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.128",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.149",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.150",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.151",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.152",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.153",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.154",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.155",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.156",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.157",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.158",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.159",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.160",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.161",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.162",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.163",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.184",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.186",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.187",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.202",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.203",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.835.204",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.836.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.837.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.838.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.839.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.859.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.860.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.861.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.862.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.862.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.863.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.864.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.865.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.866.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.867.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.868.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.868.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.869.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.870.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.871.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.871.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.872.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.873.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.45",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.46",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.47",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.48",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.49",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.101",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.102",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.103",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.104",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.106",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.116",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.117",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.119",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.120",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.0.874.121",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.877.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.878.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.879.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.880.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.881.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.882.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.883.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.884.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.885.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.886.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.886.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.887.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.888.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.889.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.889.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.889.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.890.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.890.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.891.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.891.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.892.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.893.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.893.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.894.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.895.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.896.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.897.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.898.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.899.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.900.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.901.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.902.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.903.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.904.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.905.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.906.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.906.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.907.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.908.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.909.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.910.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.911.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.911.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.911.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.62",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.63",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.66",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.74",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.75",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.76",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.0.912.77",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.921.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.922.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.923.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.923.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.924.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.925.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.926.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.927.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.928.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.928.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.928.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.928.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.929.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.930.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.931.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.932.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.933.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.933.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.934.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.935.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.935.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.936.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.936.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.937.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.938.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.939.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.939.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.940.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.941.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.942.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.943.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.944.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.945.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.946.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.947.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.948.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.949.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.950.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.951.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.952.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.953.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.954.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.954.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.954.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.954.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.955.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.956.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.957.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.958.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.958.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.959.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.960.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.961.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.962.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.0.963.45",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "xmlsoft",
            "product" : {
              "product_data" : [ {
                "product_name" : "libxslt",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.1.26",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "suse",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_software_development_kit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-125"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://code.google.com/p/chromium/issues/detail?id=110277",
          "name" : "http://code.google.com/p/chromium/issues/detail?id=110277",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Vendor Advisory" ]
        }, {
          "url" : "http://googlechromereleases.blogspot.com/2012/02/stable-channel-update.html",
          "name" : "http://googlechromereleases.blogspot.com/2012/02/stable-channel-update.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Release Notes", "Vendor Advisory" ]
        }, {
          "url" : "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14818",
          "name" : "oval:org.mitre.oval:def:14818",
          "refsource" : "OVAL",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.suse.com/support/update/announcement/2013/suse-su-20131654-1.html",
          "name" : "SUSE-SU-2013:1654",
          "refsource" : "SUSE",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.suse.com/support/update/announcement/2013/suse-su-20131656-1.html",
          "name" : "SUSE-SU-2013:1656",
          "refsource" : "SUSE",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "libxslt, as used in Google Chrome before 17.0.963.46, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "17.0.963.46"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:xmlsoft:libxslt:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "1.1.26"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:11:sp2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:11:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:10:sp4:*:*:ltss:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp2:*:*:*:vmware:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp3:*:*:*:vmware:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_software_development_kit:11:sp2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_software_development_kit:11:sp3:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2012-02-09T04:10Z",
    "lastModifiedDate" : "2020-09-09T15:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2012-1499",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://code.google.com/p/openjpeg/source/detail?r=1330",
          "name" : "http://code.google.com/p/openjpeg/source/detail?r=1330",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2012-June/082923.html",
          "name" : "FEDORA-2012-9628",
          "refsource" : "FEDORA",
          "tags" : [ ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2012-June/083105.html",
          "name" : "FEDORA-2012-9602",
          "refsource" : "FEDORA",
          "tags" : [ ]
        }, {
          "url" : "http://openjpeg.googlecode.com/svn/branches/openjpeg-1.5/NEWS",
          "name" : "http://openjpeg.googlecode.com/svn/branches/openjpeg-1.5/NEWS",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201206-06.xml",
          "name" : "GLSA-201206-06",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://technet.microsoft.com/en-us/security/msvr/msvr12-004",
          "name" : "http://technet.microsoft.com/en-us/security/msvr/msvr12-004",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/52654",
          "name" : "52654",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=805912",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=805912",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The JPEG 2000 codec (jp2.c) in OpenJPEG before 1.5 allows remote attackers to execute arbitrary code via a crafted palette index in a CMAP record of a JPEG image, which triggers memory corruption, aka \"out-of heap-based buffer write.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "1.4"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2012-04-11T10:39Z",
    "lastModifiedDate" : "2020-09-09T19:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2012-1836",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "inspircd",
            "product" : {
              "product_data" : [ {
                "product_name" : "inspircd",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.0.5",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://osvdb.org/80263",
          "name" : "80263",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/48474",
          "name" : "48474",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2012/dsa-2448",
          "name" : "DSA-2448",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.kb.cert.org/vuls/id/212651",
          "name" : "VU#212651",
          "refsource" : "CERT-VN",
          "tags" : [ "Patch", "US Government Resource" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/52561",
          "name" : "52561",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/74157",
          "name" : "inspircd-dns-bo(74157)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://github.com/inspircd/inspircd/commit/fe7dbd2c104c37f6f3af7d9f1646a3c332aea4a4",
          "name" : "https://github.com/inspircd/inspircd/commit/fe7dbd2c104c37f6f3af7d9f1646a3c332aea4a4",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Patch" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Heap-based buffer overflow in dns.cpp in InspIRCd 2.0.5 might allow remote attackers to execute arbitrary code via a crafted DNS query that uses compression."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:inspircd:inspircd:2.0.5:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2012-03-22T03:28Z",
    "lastModifiedDate" : "2020-09-14T12:33Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2012-3358",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://code.google.com/p/openjpeg/source/detail?r=1727",
          "name" : "http://code.google.com/p/openjpeg/source/detail?r=1727",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/83741",
          "name" : "83741",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2012-1068.html",
          "name" : "RHSA-2012:1068",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/49913",
          "name" : "49913",
          "refsource" : "SECUNIA",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2012:104",
          "name" : "MDVSA-2012:104",
          "refsource" : "MANDRIVA",
          "tags" : [ ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2012/07/11/1",
          "name" : "[oss-security] 20120711 Openjpeg: heap-buffer overflow when processing JPEG2000 image files",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/54373",
          "name" : "54373",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/76850",
          "name" : "openjpeg-jpeg2000-bo(76850)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Multiple heap-based buffer overflows in the j2k_read_sot function in j2k.c in OpenJPEG 1.5 allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted (1) tile number or (2) tile length in a JPEG 2000 image file."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.5:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2012-07-18T23:55Z",
    "lastModifiedDate" : "2020-09-09T19:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2012-3535",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://code.google.com/p/openjpeg/issues/detail?id=170",
          "name" : "http://code.google.com/p/openjpeg/issues/detail?id=170",
          "refsource" : "MISC",
          "tags" : [ "Exploit" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2012-October/090021.html",
          "name" : "FEDORA-2012-14664",
          "refsource" : "FEDORA",
          "tags" : [ ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2012-October/090579.html",
          "name" : "FEDORA-2012-14707",
          "refsource" : "FEDORA",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/84978",
          "name" : "84978",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2012-1283.html",
          "name" : "RHSA-2012:1283",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/50360",
          "name" : "50360",
          "refsource" : "SECUNIA",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://secunia.com/advisories/50681",
          "name" : "50681",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2012:157",
          "name" : "MDVSA-2012:157",
          "refsource" : "MANDRIVA",
          "tags" : [ ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2012/08/27/2",
          "name" : "[oss-security] 20120827 CVE Request: Heap-based buffer overflow in openjpeg",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2012/08/27/3",
          "name" : "[oss-security] 20120827 Re: CVE Request: Heap-based buffer overflow in openjpeg",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/55214",
          "name" : "55214",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=842918",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=842918",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/77994",
          "name" : "openjpeg-files-bo(77994)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Heap-based buffer overflow in OpenJPEG 1.5.0 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted JPEG2000 file."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "1.5"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2012-09-05T23:55Z",
    "lastModifiedDate" : "2020-09-09T19:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2012-3972",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "mozilla",
            "product" : {
              "product_data" : [ {
                "product_name" : "firefox",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.6.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "firefox_esr",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "seamonkey",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "thunderbird",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "thunderbird_esr",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.6",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.3",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.3",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "suse",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_software_development_kit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-200"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2012-08/msg00028.html",
          "name" : "openSUSE-SU-2012:1065",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2012-09/msg00011.html",
          "name" : "SUSE-SU-2012:1157",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2012-09/msg00014.html",
          "name" : "SUSE-SU-2012:1167",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2012-1210.html",
          "name" : "RHSA-2012:1210",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2012-1211.html",
          "name" : "RHSA-2012:1211",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2012/dsa-2553",
          "name" : "DSA-2553",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2012/dsa-2554",
          "name" : "DSA-2554",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2012/dsa-2556",
          "name" : "DSA-2556",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.mozilla.org/security/announce/2012/mfsa2012-65.html",
          "name" : "http://www.mozilla.org/security/announce/2012/mfsa2012-65.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-1548-1",
          "name" : "USN-1548-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-1548-2",
          "name" : "USN-1548-2",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.xerox.com/download/security/security-bulletin/16287-4d6b7b0c81f7b/cert_XRX13-003_v1.0.pdf",
          "name" : "http://www.xerox.com/download/security/security-bulletin/16287-4d6b7b0c81f7b/cert_XRX13-003_v1.0.pdf",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.mozilla.org/show_bug.cgi?id=746855",
          "name" : "https://bugzilla.mozilla.org/show_bug.cgi?id=746855",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Vendor Advisory" ]
        }, {
          "url" : "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16234",
          "name" : "oval:org.mitre.oval:def:16234",
          "refsource" : "OVAL",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The format-number functionality in the XSLT implementation in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 allows remote attackers to obtain sensitive information via unspecified vectors that trigger a heap-based buffer over-read."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "15.0"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:mozilla:firefox_esr:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "10.0",
          "versionEndExcluding" : "10.0.7"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:mozilla:seamonkey:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "2.12"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "15.0"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:mozilla:thunderbird_esr:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "10.0",
          "versionEndExcluding" : "10.0.7"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:12.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:10:sp4:*:*:-:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:11:sp2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:10:sp4:*:*:-:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp2:*:*:*:-:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp2:*:*:*:vmware:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_software_development_kit:11:sp2:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:6.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:6.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:11.04:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:11.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2012-08-29T10:56Z",
    "lastModifiedDate" : "2020-09-09T14:51Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2012-6696",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "inspircd",
            "product" : {
              "product_data" : [ {
                "product_name" : "inspircd",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.0.5",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-20"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2015/dsa-3226",
          "name" : "DSA-3226",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/08/26/1",
          "name" : "[oss-security] 20150825 Re: CVE request: 2 issues in inspircd",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/inspircd/inspircd/commit/ed28c1ba666b39581adb860bf51cdde43c84cc89",
          "name" : "https://github.com/inspircd/inspircd/commit/ed28c1ba666b39581adb860bf51cdde43c84cc89",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "inspircd in Debian before 2.0.7 does not properly handle unsigned integers.  NOTE: This vulnerability exists because of an incomplete fix to CVE-2012-1836."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:inspircd:inspircd:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.0.5"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.8,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-09-25T21:29Z",
    "lastModifiedDate" : "2020-09-14T12:33Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-1447",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.3",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "name" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2013-1850.html",
          "name" : "RHSA-2013:1850",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/oss-sec/2013/q4/412",
          "name" : "[oss-security] 20131204 Fwd: [vs] multiple issues in openjpeg",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2013/dsa-2808",
          "name" : "DSA-2808",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64142",
          "name" : "64142",
          "refsource" : "BID",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "OpenJPEG 1.3 and earlier allows remote attackers to cause a denial of service (memory consumption or crash) via unspecified vectors related to NULL pointer dereferences, division-by-zero, and other errors."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "1.3"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2013-12-12T18:55Z",
    "lastModifiedDate" : "2020-09-09T19:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-4289",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-189"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "name" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/oss-sec/2013/q3/593",
          "name" : "[oss-security] 20140911 [seth.arnold () canonical com: CVE Requests openjpeg]",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/57285",
          "name" : "57285",
          "refsource" : "SECUNIA",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/62363",
          "name" : "62363",
          "refsource" : "BID",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Multiple integer overflows in lib/openjp3d/jp3d.c in OpenJPEG before 1.5.2 allow remote attackers to have unspecified impact and vectors, which trigger a heap-based buffer overflow."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "1.5.1"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-18T14:55Z",
    "lastModifiedDate" : "2020-09-09T19:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-4290",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "name" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/oss-sec/2013/q3/593",
          "name" : "[oss-security] 20140911 [seth.arnold () canonical com: CVE Requests openjpeg]",
          "refsource" : "MLIST",
          "tags" : [ "Exploit" ]
        }, {
          "url" : "http://secunia.com/advisories/57285",
          "name" : "57285",
          "refsource" : "SECUNIA",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/62362",
          "name" : "62362",
          "refsource" : "BID",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Stack-based buffer overflow in OpenJPEG before 1.5.2 allows remote attackers to have unspecified impact via unknown vectors to (1) lib/openjp3d/opj_jp3d_compress.c, (2) bin/jp3d/convert.c, or (3) lib/openjp3d/event.c."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "1.5.1"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-18T14:55Z",
    "lastModifiedDate" : "2020-09-09T19:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-4391",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "freedesktop",
            "product" : {
              "product_data" : [ {
                "product_name" : "systemd",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "001",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "002",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "003",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "004",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "005",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "006",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "007",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "008",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "009",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "010",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "011",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "012",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "013",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "014",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "015",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "016",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "017",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "018",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "019",
                    "version_affected" : "="
                  }, {
                    "version_value" : "19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "020",
                    "version_affected" : "="
                  }, {
                    "version_value" : "20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "021",
                    "version_affected" : "="
                  }, {
                    "version_value" : "21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "022",
                    "version_affected" : "="
                  }, {
                    "version_value" : "22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "023",
                    "version_affected" : "="
                  }, {
                    "version_value" : "23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "024",
                    "version_affected" : "="
                  }, {
                    "version_value" : "24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "025",
                    "version_affected" : "="
                  }, {
                    "version_value" : "25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "026",
                    "version_affected" : "="
                  }, {
                    "version_value" : "26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "027",
                    "version_affected" : "="
                  }, {
                    "version_value" : "27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "028",
                    "version_affected" : "="
                  }, {
                    "version_value" : "28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "029",
                    "version_affected" : "="
                  }, {
                    "version_value" : "29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "030",
                    "version_affected" : "="
                  }, {
                    "version_value" : "30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "031",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "032",
                    "version_affected" : "="
                  }, {
                    "version_value" : "32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "033",
                    "version_affected" : "="
                  }, {
                    "version_value" : "33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "034",
                    "version_affected" : "="
                  }, {
                    "version_value" : "34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "035",
                    "version_affected" : "="
                  }, {
                    "version_value" : "35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "036",
                    "version_affected" : "="
                  }, {
                    "version_value" : "36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "037",
                    "version_affected" : "="
                  }, {
                    "version_value" : "37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "038",
                    "version_affected" : "="
                  }, {
                    "version_value" : "38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "039",
                    "version_affected" : "="
                  }, {
                    "version_value" : "39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "040",
                    "version_affected" : "="
                  }, {
                    "version_value" : "40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "042",
                    "version_affected" : "="
                  }, {
                    "version_value" : "42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "043",
                    "version_affected" : "="
                  }, {
                    "version_value" : "43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "044",
                    "version_affected" : "="
                  }, {
                    "version_value" : "44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "045",
                    "version_affected" : "="
                  }, {
                    "version_value" : "046",
                    "version_affected" : "="
                  }, {
                    "version_value" : "047",
                    "version_affected" : "="
                  }, {
                    "version_value" : "048",
                    "version_affected" : "="
                  }, {
                    "version_value" : "049",
                    "version_affected" : "="
                  }, {
                    "version_value" : "050",
                    "version_affected" : "="
                  }, {
                    "version_value" : "051",
                    "version_affected" : "="
                  }, {
                    "version_value" : "052",
                    "version_affected" : "="
                  }, {
                    "version_value" : "053",
                    "version_affected" : "="
                  }, {
                    "version_value" : "054",
                    "version_affected" : "="
                  }, {
                    "version_value" : "055",
                    "version_affected" : "="
                  }, {
                    "version_value" : "056",
                    "version_affected" : "="
                  }, {
                    "version_value" : "057",
                    "version_affected" : "="
                  }, {
                    "version_value" : "058",
                    "version_affected" : "="
                  }, {
                    "version_value" : "059",
                    "version_affected" : "="
                  }, {
                    "version_value" : "060",
                    "version_affected" : "="
                  }, {
                    "version_value" : "061",
                    "version_affected" : "="
                  }, {
                    "version_value" : "062",
                    "version_affected" : "="
                  }, {
                    "version_value" : "064",
                    "version_affected" : "="
                  }, {
                    "version_value" : "174",
                    "version_affected" : "="
                  }, {
                    "version_value" : "175",
                    "version_affected" : "="
                  }, {
                    "version_value" : "176",
                    "version_affected" : "="
                  }, {
                    "version_value" : "177",
                    "version_affected" : "="
                  }, {
                    "version_value" : "178",
                    "version_affected" : "="
                  }, {
                    "version_value" : "179",
                    "version_affected" : "="
                  }, {
                    "version_value" : "180",
                    "version_affected" : "="
                  }, {
                    "version_value" : "181",
                    "version_affected" : "="
                  }, {
                    "version_value" : "182",
                    "version_affected" : "="
                  }, {
                    "version_value" : "183",
                    "version_affected" : "="
                  }, {
                    "version_value" : "184",
                    "version_affected" : "="
                  }, {
                    "version_value" : "185",
                    "version_affected" : "="
                  }, {
                    "version_value" : "186",
                    "version_affected" : "="
                  }, {
                    "version_value" : "187",
                    "version_affected" : "="
                  }, {
                    "version_value" : "188",
                    "version_affected" : "="
                  }, {
                    "version_value" : "189",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-190"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=725357",
          "name" : "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=725357",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "http://cgit.freedesktop.org/systemd/systemd/commit/?id=505b6a61c22d5565e9308045c7b9bf79f7d0517e",
          "name" : "http://cgit.freedesktop.org/systemd/systemd/commit/?id=505b6a61c22d5565e9308045c7b9bf79f7d0517e",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2013/dsa-2777",
          "name" : "DSA-2777",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2013/10/01/9",
          "name" : "[oss-security] 20131001 Re: [CVE request] systemd",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=859051",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=859051",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201612-34",
          "name" : "GLSA-201612-34",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Integer overflow in the valid_user_field function in journal/journald-native.c in systemd allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large journal data field, which triggers a heap-based buffer overflow."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:freedesktop:systemd:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "190"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2013-10-28T22:55Z",
    "lastModifiedDate" : "2020-09-11T16:46Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-4393",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "freedesktop",
            "product" : {
              "product_data" : [ {
                "product_name" : "systemd",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "001",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "002",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "003",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "004",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "005",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "006",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "007",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "008",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "009",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "010",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "011",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "012",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "013",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "014",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "015",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "016",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "017",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "018",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "019",
                    "version_affected" : "="
                  }, {
                    "version_value" : "19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "020",
                    "version_affected" : "="
                  }, {
                    "version_value" : "20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "021",
                    "version_affected" : "="
                  }, {
                    "version_value" : "21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "022",
                    "version_affected" : "="
                  }, {
                    "version_value" : "22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "023",
                    "version_affected" : "="
                  }, {
                    "version_value" : "23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "024",
                    "version_affected" : "="
                  }, {
                    "version_value" : "24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "025",
                    "version_affected" : "="
                  }, {
                    "version_value" : "25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "026",
                    "version_affected" : "="
                  }, {
                    "version_value" : "26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "027",
                    "version_affected" : "="
                  }, {
                    "version_value" : "27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "028",
                    "version_affected" : "="
                  }, {
                    "version_value" : "28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "029",
                    "version_affected" : "="
                  }, {
                    "version_value" : "29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "030",
                    "version_affected" : "="
                  }, {
                    "version_value" : "30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "031",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "032",
                    "version_affected" : "="
                  }, {
                    "version_value" : "32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "033",
                    "version_affected" : "="
                  }, {
                    "version_value" : "33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "034",
                    "version_affected" : "="
                  }, {
                    "version_value" : "34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "035",
                    "version_affected" : "="
                  }, {
                    "version_value" : "35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "036",
                    "version_affected" : "="
                  }, {
                    "version_value" : "36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "037",
                    "version_affected" : "="
                  }, {
                    "version_value" : "37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "038",
                    "version_affected" : "="
                  }, {
                    "version_value" : "38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "039",
                    "version_affected" : "="
                  }, {
                    "version_value" : "39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "040",
                    "version_affected" : "="
                  }, {
                    "version_value" : "40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "042",
                    "version_affected" : "="
                  }, {
                    "version_value" : "42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "043",
                    "version_affected" : "="
                  }, {
                    "version_value" : "43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "044",
                    "version_affected" : "="
                  }, {
                    "version_value" : "44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "045",
                    "version_affected" : "="
                  }, {
                    "version_value" : "046",
                    "version_affected" : "="
                  }, {
                    "version_value" : "047",
                    "version_affected" : "="
                  }, {
                    "version_value" : "048",
                    "version_affected" : "="
                  }, {
                    "version_value" : "049",
                    "version_affected" : "="
                  }, {
                    "version_value" : "050",
                    "version_affected" : "="
                  }, {
                    "version_value" : "051",
                    "version_affected" : "="
                  }, {
                    "version_value" : "052",
                    "version_affected" : "="
                  }, {
                    "version_value" : "053",
                    "version_affected" : "="
                  }, {
                    "version_value" : "054",
                    "version_affected" : "="
                  }, {
                    "version_value" : "055",
                    "version_affected" : "="
                  }, {
                    "version_value" : "056",
                    "version_affected" : "="
                  }, {
                    "version_value" : "057",
                    "version_affected" : "="
                  }, {
                    "version_value" : "058",
                    "version_affected" : "="
                  }, {
                    "version_value" : "059",
                    "version_affected" : "="
                  }, {
                    "version_value" : "060",
                    "version_affected" : "="
                  }, {
                    "version_value" : "061",
                    "version_affected" : "="
                  }, {
                    "version_value" : "062",
                    "version_affected" : "="
                  }, {
                    "version_value" : "064",
                    "version_affected" : "="
                  }, {
                    "version_value" : "174",
                    "version_affected" : "="
                  }, {
                    "version_value" : "175",
                    "version_affected" : "="
                  }, {
                    "version_value" : "176",
                    "version_affected" : "="
                  }, {
                    "version_value" : "177",
                    "version_affected" : "="
                  }, {
                    "version_value" : "178",
                    "version_affected" : "="
                  }, {
                    "version_value" : "179",
                    "version_affected" : "="
                  }, {
                    "version_value" : "180",
                    "version_affected" : "="
                  }, {
                    "version_value" : "181",
                    "version_affected" : "="
                  }, {
                    "version_value" : "182",
                    "version_affected" : "="
                  }, {
                    "version_value" : "183",
                    "version_affected" : "="
                  }, {
                    "version_value" : "184",
                    "version_affected" : "="
                  }, {
                    "version_value" : "185",
                    "version_affected" : "="
                  }, {
                    "version_value" : "186",
                    "version_affected" : "="
                  }, {
                    "version_value" : "187",
                    "version_affected" : "="
                  }, {
                    "version_value" : "188",
                    "version_affected" : "="
                  }, {
                    "version_value" : "189",
                    "version_affected" : "="
                  }, {
                    "version_value" : "190",
                    "version_affected" : "="
                  }, {
                    "version_value" : "191",
                    "version_affected" : "="
                  }, {
                    "version_value" : "192",
                    "version_affected" : "="
                  }, {
                    "version_value" : "193",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=725357",
          "name" : "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=725357",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2013/10/01/9",
          "name" : "[oss-security] 20131001 Re: [CVE request] systemd",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=859104",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=859104",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201612-34",
          "name" : "GLSA-201612-34",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "journald in systemd, when the origin of native messages is set to file, allows local users to cause a denial of service (logging service blocking) via a crafted file descriptor."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:freedesktop:systemd:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "194"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 2.1
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2013-10-28T22:55Z",
    "lastModifiedDate" : "2020-09-11T16:46Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-4394",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "freedesktop",
            "product" : {
              "product_data" : [ {
                "product_name" : "systemd",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "001",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "002",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "003",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "004",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "005",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "006",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "007",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "008",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "009",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "010",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "011",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "012",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "013",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "014",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "015",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "016",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "017",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "018",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "019",
                    "version_affected" : "="
                  }, {
                    "version_value" : "19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "020",
                    "version_affected" : "="
                  }, {
                    "version_value" : "20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "021",
                    "version_affected" : "="
                  }, {
                    "version_value" : "21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "022",
                    "version_affected" : "="
                  }, {
                    "version_value" : "22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "023",
                    "version_affected" : "="
                  }, {
                    "version_value" : "23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "024",
                    "version_affected" : "="
                  }, {
                    "version_value" : "24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "025",
                    "version_affected" : "="
                  }, {
                    "version_value" : "25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "026",
                    "version_affected" : "="
                  }, {
                    "version_value" : "26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "027",
                    "version_affected" : "="
                  }, {
                    "version_value" : "27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "028",
                    "version_affected" : "="
                  }, {
                    "version_value" : "28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "029",
                    "version_affected" : "="
                  }, {
                    "version_value" : "29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "030",
                    "version_affected" : "="
                  }, {
                    "version_value" : "30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "031",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "032",
                    "version_affected" : "="
                  }, {
                    "version_value" : "32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "033",
                    "version_affected" : "="
                  }, {
                    "version_value" : "33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "034",
                    "version_affected" : "="
                  }, {
                    "version_value" : "34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "035",
                    "version_affected" : "="
                  }, {
                    "version_value" : "35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "036",
                    "version_affected" : "="
                  }, {
                    "version_value" : "36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "037",
                    "version_affected" : "="
                  }, {
                    "version_value" : "37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "038",
                    "version_affected" : "="
                  }, {
                    "version_value" : "38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "039",
                    "version_affected" : "="
                  }, {
                    "version_value" : "39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "040",
                    "version_affected" : "="
                  }, {
                    "version_value" : "40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "042",
                    "version_affected" : "="
                  }, {
                    "version_value" : "42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "043",
                    "version_affected" : "="
                  }, {
                    "version_value" : "43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "044",
                    "version_affected" : "="
                  }, {
                    "version_value" : "44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "045",
                    "version_affected" : "="
                  }, {
                    "version_value" : "046",
                    "version_affected" : "="
                  }, {
                    "version_value" : "047",
                    "version_affected" : "="
                  }, {
                    "version_value" : "048",
                    "version_affected" : "="
                  }, {
                    "version_value" : "049",
                    "version_affected" : "="
                  }, {
                    "version_value" : "050",
                    "version_affected" : "="
                  }, {
                    "version_value" : "051",
                    "version_affected" : "="
                  }, {
                    "version_value" : "052",
                    "version_affected" : "="
                  }, {
                    "version_value" : "053",
                    "version_affected" : "="
                  }, {
                    "version_value" : "054",
                    "version_affected" : "="
                  }, {
                    "version_value" : "055",
                    "version_affected" : "="
                  }, {
                    "version_value" : "056",
                    "version_affected" : "="
                  }, {
                    "version_value" : "057",
                    "version_affected" : "="
                  }, {
                    "version_value" : "058",
                    "version_affected" : "="
                  }, {
                    "version_value" : "059",
                    "version_affected" : "="
                  }, {
                    "version_value" : "060",
                    "version_affected" : "="
                  }, {
                    "version_value" : "061",
                    "version_affected" : "="
                  }, {
                    "version_value" : "062",
                    "version_affected" : "="
                  }, {
                    "version_value" : "064",
                    "version_affected" : "="
                  }, {
                    "version_value" : "174",
                    "version_affected" : "="
                  }, {
                    "version_value" : "175",
                    "version_affected" : "="
                  }, {
                    "version_value" : "176",
                    "version_affected" : "="
                  }, {
                    "version_value" : "177",
                    "version_affected" : "="
                  }, {
                    "version_value" : "178",
                    "version_affected" : "="
                  }, {
                    "version_value" : "179",
                    "version_affected" : "="
                  }, {
                    "version_value" : "180",
                    "version_affected" : "="
                  }, {
                    "version_value" : "181",
                    "version_affected" : "="
                  }, {
                    "version_value" : "182",
                    "version_affected" : "="
                  }, {
                    "version_value" : "183",
                    "version_affected" : "="
                  }, {
                    "version_value" : "184",
                    "version_affected" : "="
                  }, {
                    "version_value" : "185",
                    "version_affected" : "="
                  }, {
                    "version_value" : "186",
                    "version_affected" : "="
                  }, {
                    "version_value" : "187",
                    "version_affected" : "="
                  }, {
                    "version_value" : "188",
                    "version_affected" : "="
                  }, {
                    "version_value" : "189",
                    "version_affected" : "="
                  }, {
                    "version_value" : "190",
                    "version_affected" : "="
                  }, {
                    "version_value" : "191",
                    "version_affected" : "="
                  }, {
                    "version_value" : "192",
                    "version_affected" : "="
                  }, {
                    "version_value" : "193",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-276"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=725357",
          "name" : "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=725357",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2013/dsa-2777",
          "name" : "DSA-2777",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2013/10/01/9",
          "name" : "[oss-security] 20131001 Re: [CVE request] systemd",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=862324",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=862324",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201612-34",
          "name" : "GLSA-201612-34",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The SetX11Keyboard function in systemd, when PolicyKit Local Authority (PKLA) is used to change the group permissions on the X Keyboard Extension (XKB) layouts description, allows local users in the group to modify the Xorg X11 Server configuration file and possibly gain privileges via vectors involving \"special and control characters.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:freedesktop:systemd:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "194"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:H/Au:N/C:C/I:C/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 1.9,
        "impactScore" : 9.5,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2013-10-28T22:55Z",
    "lastModifiedDate" : "2020-09-11T16:46Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5870",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0.08",
                    "version_affected" : "<="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0.08",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.45",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_hpc_node_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.5.z",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://osvdb.org/101994",
          "name" : "101994",
          "refsource" : "OSVDB",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://secunia.com/advisories/56484",
          "name" : "56484",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64929",
          "name" : "64929",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90337",
          "name" : "oracle-cpujan2014-cve20135870(90337)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u45 and JavaFX 2.2.45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to JavaFX."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_hpc_node_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary_aus:6.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary_eus:6.5.z:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation_supplementary:6.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:hp:jdk:*:*:*:*:*:*:*:*",
            "versionEndIncluding" : "7.0.08"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:hp:jre:*:*:*:*:*:*:*:*",
            "versionEndIncluding" : "7.0.08"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.23:*:*:*:*:*:*:*"
          }, {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.31:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.45:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:11Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5878",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102005",
          "name" : "102005",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0026.html",
          "name" : "RHSA-2014:0026",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0027.html",
          "name" : "RHSA-2014:0027",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0097.html",
          "name" : "RHSA-2014:0097",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56432",
          "name" : "56432",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56486",
          "name" : "56486",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64927",
          "name" : "64927",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2124-1",
          "name" : "USN-2124-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051823",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051823",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45, Java SE Embedded 7u45, and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Security.  NOTE: the previous information is from the January 2014 CPU.  Oracle has not commented on third-party claims that the Security component does not properly handle null XML namespace (xmlns) attributes during XML document canonicalization, which allows attackers to escape the sandbox."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:11Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5884",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://hg.openjdk.java.net/jdk7u/jdk7u/corba/rev/b1548473f261",
          "name" : "http://hg.openjdk.java.net/jdk7u/jdk7u/corba/rev/b1548473f261",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102016",
          "name" : "102016",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0026.html",
          "name" : "RHSA-2014:0026",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0027.html",
          "name" : "RHSA-2014:0027",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0097.html",
          "name" : "RHSA-2014:0097",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56432",
          "name" : "56432",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56486",
          "name" : "56486",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64924",
          "name" : "64924",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2124-1",
          "name" : "USN-2124-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051911",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051911",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90348",
          "name" : "oracle-cpujan2014-cve20135884(90348)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect confidentiality via vectors related to CORBA.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to an incorrect check for code permissions by CORBA stub factories."
        }, {
          "lang" : "en",
          "value" : "per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\n"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_55:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_55:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:11Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5887",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102013",
          "name" : "102013",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64875",
          "name" : "64875",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90345",
          "name" : "oracle-cpujan2014-cve20135887(90345)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect availability via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:11Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5888",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102023",
          "name" : "102023",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64925",
          "name" : "64925",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90354",
          "name" : "oracle-cpujan2014-cve20135888(90354)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45, when running with GNOME, allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java under GNOME environment on Linux and Solaris.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.6
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:11Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5889",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102020",
          "name" : "102020",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64931",
          "name" : "64931",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5902, CVE-2014-0410, CVE-2014-0415, CVE-2014-0418, and CVE-2014-0424."
        }, {
          "lang" : "en",
          "value" : "per http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:11Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5893",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://hg.openjdk.java.net/jdk7u/jdk7u/hotspot/rev/839100e42498",
          "name" : "http://hg.openjdk.java.net/jdk7u/jdk7u/hotspot/rev/839100e42498",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102000",
          "name" : "102000",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0026.html",
          "name" : "RHSA-2014:0026",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0027.html",
          "name" : "RHSA-2014:0027",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56432",
          "name" : "56432",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56486",
          "name" : "56486",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64863",
          "name" : "64863",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051549",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051549",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u45 and Java SE Embedded 7u45, and OpenJDK 7, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to improper handling of methods in MethodHandles in HotSpot JVM, which allows attackers to escape the sandbox."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5895",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0.08",
                    "version_affected" : "<="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0.08",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.45",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_hpc_node_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.5.z",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://osvdb.org/102022",
          "name" : "102022",
          "refsource" : "OSVDB",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://secunia.com/advisories/56484",
          "name" : "56484",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64906",
          "name" : "64906",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90353",
          "name" : "oracle-cpujan2014-cve20135895(90353)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u45 and JavaFX 2.2.45 allows remote attackers to affect confidentiality via unknown vectors related to JavaFX."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_hpc_node_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary_aus:6.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary_eus:6.5.z:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation_supplementary:6.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:hp:jdk:*:*:*:*:*:*:*:*",
            "versionEndIncluding" : "7.0.08"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:hp:jre:*:*:*:*:*:*:*:*",
            "versionEndIncluding" : "7.0.08"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.23:*:*:*:*:*:*:*"
          }, {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.31:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.45:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5896",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/694ad155b344",
          "name" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/694ad155b344",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102015",
          "name" : "102015",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0026.html",
          "name" : "RHSA-2014:0026",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0027.html",
          "name" : "RHSA-2014:0027",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0097.html",
          "name" : "RHSA-2014:0097",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56432",
          "name" : "56432",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56486",
          "name" : "56486",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64926",
          "name" : "64926",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2124-1",
          "name" : "USN-2124-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1053266",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1053266",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90347",
          "name" : "oracle-cpujan2014-cve20135896(90347)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect availability via vectors related to CORBA.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that com.sun.corba.se and its sub-packages are not included on the restricted package list."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_55:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_55:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5898",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102027",
          "name" : "102027",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64912",
          "name" : "64912",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90356",
          "name" : "oracle-cpujan2014-cve20135898(90356)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2014-0375 and CVE-2014-0403."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5899",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102014",
          "name" : "102014",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64928",
          "name" : "64928",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90346",
          "name" : "oracle-cpujan2014-cve20135899(90346)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5902",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102011",
          "name" : "102011",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64923",
          "name" : "64923",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90343",
          "name" : "oracle-cpujan2014-cve20135902(90343)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2014-0410, CVE-2014-0415, CVE-2014-0418, and CVE-2014-0424."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5904",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0.08",
                    "version_affected" : "<="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0.08",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_hpc_node_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.5.z",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://osvdb.org/101993",
          "name" : "101993",
          "refsource" : "OSVDB",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64890",
          "name" : "64890",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90336",
          "name" : "oracle-cpujan2014-cve20135904(90336)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_hpc_node_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary_aus:6.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary_eus:6.5.z:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation_supplementary:6.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:hp:jdk:*:*:*:*:*:*:*:*",
            "versionEndIncluding" : "7.0.08"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:hp:jre:*:*:*:*:*:*:*:*",
            "versionEndIncluding" : "7.0.08"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.23:*:*:*:*:*:*:*"
          }, {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.31:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5905",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102009",
          "name" : "102009",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64934",
          "name" : "64934",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90341",
          "name" : "oracle-cpujan2014-cve20135905(90341)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Install, a different vulnerability than CVE-2013-5906."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to installation process on client deployment of Java.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_55:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_55:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5906",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0.08",
                    "version_affected" : "<="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0.08",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_hpc_node_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.5.z",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://osvdb.org/102010",
          "name" : "102010",
          "refsource" : "OSVDB",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64903",
          "name" : "64903",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90342",
          "name" : "oracle-cpujan2014-cve20135906(90342)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Install, a different vulnerability than CVE-2013-5905."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to installation process on client deployment of Java.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_hpc_node_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary_aus:6.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary_eus:6.5.z:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation_supplementary:6.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:hp:jdk:*:*:*:*:*:*:*:*",
            "versionEndIncluding" : "7.0.08"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:hp:jre:*:*:*:*:*:*:*:*",
            "versionEndIncluding" : "7.0.08"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.23:*:*:*:*:*:*:*"
          }, {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.31:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_55:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_55:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5907",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.7.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.2.9",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/9d29c19f1de1",
          "name" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/9d29c19f1de1",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/101995",
          "name" : "101995",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0026.html",
          "name" : "RHSA-2014:0026",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0027.html",
          "name" : "RHSA-2014:0027",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0097.html",
          "name" : "RHSA-2014:0097",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0136.html",
          "name" : "RHSA-2014:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56432",
          "name" : "56432",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56486",
          "name" : "56486",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56487",
          "name" : "56487",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64894",
          "name" : "64894",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2124-1",
          "name" : "USN-2124-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1052915",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1052915",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; JRockit R27.7.7 and R28.2.9; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is due to incorrect input validation in LookupProcessor.cpp in the ICU Layout Engine, which allows attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted font file."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_55:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_55:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.2.9:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-5910",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/07004bb53c3c",
          "name" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/07004bb53c3c",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102021",
          "name" : "102021",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0026.html",
          "name" : "RHSA-2014:0026",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0027.html",
          "name" : "RHSA-2014:0027",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0097.html",
          "name" : "RHSA-2014:0097",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56432",
          "name" : "56432",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56486",
          "name" : "56486",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64933",
          "name" : "64933",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2124-1",
          "name" : "USN-2124-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1052942",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1052942",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90352",
          "name" : "oracle-cpujan2014-cve20135910(90352)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45, Java SE Embedded 7u45, and OpenJDK 7 allows remote attackers to affect integrity via unknown vectors related to Security.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that CanonicalizerBase.java in the XML canonicalizer allows untrusted code to access mutable byte arrays."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-6045",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.3",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "name" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/100636",
          "name" : "100636",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/100637",
          "name" : "100637",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/100638",
          "name" : "100638",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/100641",
          "name" : "100641",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/100646",
          "name" : "100646",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2013-1850.html",
          "name" : "RHSA-2013:1850",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/oss-sec/2013/q4/412",
          "name" : "[oss-security] 20131204 Fwd: [vs] multiple issues in openjpeg",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2013/dsa-2808",
          "name" : "DSA-2808",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64109",
          "name" : "64109",
          "refsource" : "BID",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Multiple heap-based buffer overflows in OpenJPEG 1.3 and earlier might allow remote attackers to execute arbitrary code via unspecified vectors."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "1.3"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2013-12-12T18:55Z",
    "lastModifiedDate" : "2020-09-09T19:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-6052",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.3",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-200"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "name" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2013-1850.html",
          "name" : "RHSA-2013:1850",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/oss-sec/2013/q4/412",
          "name" : "[oss-security] 20131204 Fwd: [vs] multiple issues in openjpeg",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2013/dsa-2808",
          "name" : "DSA-2808",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "OpenJPEG 1.3 and earlier allows remote attackers to obtain sensitive information via unspecified vectors that trigger a heap-based out-of-bounds read."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "1.3"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2013-12-12T18:55Z",
    "lastModifiedDate" : "2020-09-09T19:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-6053",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-20"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "name" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://seclists.org/oss-sec/2013/q4/412",
          "name" : "[oss-security] 20131204 Fwd: [vs] multiple issues in openjpeg",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64121",
          "name" : "64121",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1036493",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1036493",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://code.google.com/p/openjpeg/issues/detail?id=297",
          "name" : "https://code.google.com/p/openjpeg/issues/detail?id=297",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "OpenJPEG 1.5.1 allows remote attackers to obtain sensitive information via unspecified vectors that trigger a heap-based out-of-bounds read."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.5.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-27T22:55Z",
    "lastModifiedDate" : "2020-09-09T19:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-6054",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.3",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "name" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/100639",
          "name" : "100639",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2013-1850.html",
          "name" : "RHSA-2013:1850",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/oss-sec/2013/q4/412",
          "name" : "[oss-security] 20131204 Fwd: [vs] multiple issues in openjpeg",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2013/dsa-2808",
          "name" : "DSA-2808",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64113",
          "name" : "64113",
          "refsource" : "BID",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Heap-based buffer overflow in OpenJPEG 1.3 has unspecified impact and remote vectors, a different vulnerability than CVE-2013-6045."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "1.3"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2013-12-12T18:55Z",
    "lastModifiedDate" : "2020-09-09T19:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-6887",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-20"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "name" : "http://openjpeg.googlecode.com/svn/tags/version.1.5.2/NEWS",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://seclists.org/oss-sec/2013/q4/412",
          "name" : "[oss-security] 20131204 Fwd: [vs] multiple issues in openjpeg",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/57285",
          "name" : "57285",
          "refsource" : "SECUNIA",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "OpenJPEG 1.5.1 allows remote attackers to cause a denial of service via unspecified vectors that trigger NULL pointer dereferences, division-by-zero, and other errors."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:1.5.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 6.4
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-27T20:55Z",
    "lastModifiedDate" : "2020-09-09T19:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-7490",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://github.com/perl5-dbi/dbi/commit/a8b98e988d6ea2946f5f56691d6d5ead53f65766",
          "name" : "https://github.com/perl5-dbi/dbi/commit/a8b98e988d6ea2946f5f56691d6d5ead53f65766",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://metacpan.org/pod/distribution/DBI/Changes#Changes-in-DBI-1.632-9th-Nov-2014",
          "name" : "https://metacpan.org/pod/distribution/DBI/Changes#Changes-in-DBI-1.632-9th-Nov-2014",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://rt.cpan.org/Public/Bug/Display.html?id=86744#txn-1880941",
          "name" : "https://rt.cpan.org/Public/Bug/Display.html?id=86744#txn-1880941",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An issue was discovered in the DBI module before 1.632 for Perl. Using many arguments to methods for Callbacks may lead to memory corruption."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ ]
    },
    "impact" : { },
    "publishedDate" : "2020-09-11T19:15Z",
    "lastModifiedDate" : "2020-09-11T20:18Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2013-7491",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://github.com/perl5-dbi/dbi/commit/401f1221311c71f760e21c98772f0f7e3cbead1d",
          "name" : "https://github.com/perl5-dbi/dbi/commit/401f1221311c71f760e21c98772f0f7e3cbead1d",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://metacpan.org/pod/distribution/DBI/Changes#Changes-in-DBI-1.628-22nd-July-2013",
          "name" : "https://metacpan.org/pod/distribution/DBI/Changes#Changes-in-DBI-1.628-22nd-July-2013",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://rt.cpan.org/Public/Bug/Display.html?id=85562",
          "name" : "https://rt.cpan.org/Public/Bug/Display.html?id=85562",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An issue was discovered in the DBI module before 1.628 for Perl. Stack corruption occurs when a user-defined function requires a non-trivial amount of memory and the Perl stack gets reallocated."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ ]
    },
    "impact" : { },
    "publishedDate" : "2020-09-11T19:15Z",
    "lastModifiedDate" : "2020-09-11T20:18Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0158",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1082925",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1082925",
          "refsource" : "MISC",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.suse.com/show_bug.cgi?id=871412",
          "name" : "https://bugzilla.suse.com/show_bug.cgi?id=871412",
          "refsource" : "MISC",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Heap-based buffer overflow in the JPEG2000 image tile decoder in OpenJPEG before 1.5.2 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file because of incorrect j2k_decode, j2k_read_eoc, and tcd_decode_tile interaction, a related issue to CVE-2013-6045. NOTE: this is not a duplicate of CVE-2013-1447, because the scope of CVE-2013-1447 was specifically defined in http://openwall.com/lists/oss-security/2013/12/04/6 as only \"null pointer dereferences, division by zero, and anything that would just fit as DoS.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "1.5.2"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:12.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.8,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-04-10T15:29Z",
    "lastModifiedDate" : "2020-09-09T19:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0368",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/e6160aedadd5",
          "name" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/e6160aedadd5",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0026.html",
          "name" : "RHSA-2014:0026",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0027.html",
          "name" : "RHSA-2014:0027",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0097.html",
          "name" : "RHSA-2014:0097",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0136.html",
          "name" : "RHSA-2014:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56432",
          "name" : "56432",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56486",
          "name" : "56486",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59235",
          "name" : "59235",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59339",
          "name" : "59339",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64930",
          "name" : "64930",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2124-1",
          "name" : "USN-2124-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676978",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676978",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1052919",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1052919",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45, and Java SE Embedded 7u45, allows remote attackers to affect confidentiality via unknown vectors related to Networking.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to incorrect permission checks when listening on a socket, which allows attackers to escape the sandbox."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_55:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_55:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0373",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/496c51673dec",
          "name" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/496c51673dec",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0026.html",
          "name" : "RHSA-2014:0026",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0027.html",
          "name" : "RHSA-2014:0027",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0097.html",
          "name" : "RHSA-2014:0097",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0136.html",
          "name" : "RHSA-2014:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56432",
          "name" : "56432",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64922",
          "name" : "64922",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2124-1",
          "name" : "USN-2124-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051699",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051699",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45, and OpenJDK 7, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Serviceability.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to throwing of an incorrect exception when SnmpStatusException should have been used in the SNMP implementation, which allows attackers to escape the sandbox."
        }, {
          "lang" : "en",
          "value" : "per http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_55:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_55:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0375",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102007",
          "name" : "102007",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64916",
          "name" : "64916",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90339",
          "name" : "oracle-cpujan2014-cve20140375(90339)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5898 and CVE-2014-0403."
        }, {
          "lang" : "en",
          "value" : "per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0376",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jaxp/rev/42be8e6266ab",
          "name" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jaxp/rev/42be8e6266ab",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jaxp/rev/783ceae9b736",
          "name" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jaxp/rev/783ceae9b736",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102018",
          "name" : "102018",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0026.html",
          "name" : "RHSA-2014:0026",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0027.html",
          "name" : "RHSA-2014:0027",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0097.html",
          "name" : "RHSA-2014:0097",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0136.html",
          "name" : "RHSA-2014:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56432",
          "name" : "56432",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56486",
          "name" : "56486",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64907",
          "name" : "64907",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2124-1",
          "name" : "USN-2124-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051923",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051923",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90350",
          "name" : "oracle-cpujan2014-cve20140376(90350)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect integrity via vectors related to JAXP.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to an improper check for \"code permissions when creating document builder factories.\""
        }, {
          "lang" : "en",
          "value" : "per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_55:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_55:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0382",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0.08",
                    "version_affected" : "<="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0.08",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.45",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_hpc_node_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.5.z",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://osvdb.org/102026",
          "name" : "102026",
          "refsource" : "OSVDB",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://secunia.com/advisories/56484",
          "name" : "56484",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64936",
          "name" : "64936",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90355",
          "name" : "oracle-cpujan2014-cve20140382(90355)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u45 and JavaFX 2.2.45 allows remote attackers to affect availability via unknown vectors related to JavaFX."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:hp:jdk:*:*:*:*:*:*:*:*",
            "versionEndIncluding" : "7.0.08"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:hp:jre:*:*:*:*:*:*:*:*",
            "versionEndIncluding" : "7.0.08"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.23:*:*:*:*:*:*:*"
          }, {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.31:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_hpc_node_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary_aus:6.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary_eus:6.5.z:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation_supplementary:6.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.45:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0385",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://osvdb.org/101998",
          "name" : "101998",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64901",
          "name" : "64901",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u45, when installing on OS X, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Install."
        }, {
          "lang" : "en",
          "value" : "per:\nhttp://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\nApplies to installation process on client deployment of Java."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0387",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102002",
          "name" : "102002",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64882",
          "name" : "64882",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and Java SE 7u45, when running on Firefox, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.6
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 4.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0403",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102006",
          "name" : "102006",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64920",
          "name" : "64920",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90338",
          "name" : "oracle-cpujan2014-cve20140403(90338)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5898 and CVE-2014-0375."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0408",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/101999",
          "name" : "101999",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64910",
          "name" : "64910",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u45, when running on OS X, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0410",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102024",
          "name" : "102024",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64915",
          "name" : "64915",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2013-5902, CVE-2014-0415, CVE-2014-0418, and CVE-2014-0424."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0411",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.7.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.2.9",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/d533e96c7acc",
          "name" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/d533e96c7acc",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102028",
          "name" : "102028",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0026.html",
          "name" : "RHSA-2014:0026",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0027.html",
          "name" : "RHSA-2014:0027",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0097.html",
          "name" : "RHSA-2014:0097",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0136.html",
          "name" : "RHSA-2014:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56432",
          "name" : "56432",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56486",
          "name" : "56486",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56487",
          "name" : "56487",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/57809",
          "name" : "57809",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59037",
          "name" : "59037",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59071",
          "name" : "59071",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59082",
          "name" : "59082",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59194",
          "name" : "59194",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59235",
          "name" : "59235",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59251",
          "name" : "59251",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59254",
          "name" : "59254",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59283",
          "name" : "59283",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59324",
          "name" : "59324",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59339",
          "name" : "59339",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59665",
          "name" : "59665",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59704",
          "name" : "59704",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59705",
          "name" : "59705",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59872",
          "name" : "59872",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60005",
          "name" : "60005",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60498",
          "name" : "60498",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60833",
          "name" : "60833",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60835",
          "name" : "60835",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60836",
          "name" : "60836",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.ibm.com/support/docview.wss?uid=ssg1S1004745",
          "name" : "http://www.ibm.com/support/docview.wss?uid=ssg1S1004745",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.ibm.com/support/docview.wss?uid=swg21672078",
          "name" : "http://www.ibm.com/support/docview.wss?uid=swg21672078",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64918",
          "name" : "64918",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2124-1",
          "name" : "USN-2124-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004656",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004656",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21669519",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21669519",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21675938",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21675938",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676190",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676190",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676373",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676373",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676978",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676978",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21677388",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21677388",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680234",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680234",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680387",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680387",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21682668",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21682668",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21682669",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21682669",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21682670",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21682670",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21682671",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21682671",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21682904",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21682904",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096132",
          "name" : "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096132",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1053010",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1053010",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90357",
          "name" : "oracle-cpujan2014-cve20140411(90357)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.ibm.com/support/docview.wss?uid=swg21675223",
          "name" : "https://www.ibm.com/support/docview.wss?uid=swg21675223",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.ibm.com/support/docview.wss?uid=swg21677913",
          "name" : "https://www.ibm.com/support/docview.wss?uid=swg21677913",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; JRockit R27.7.7 and R28.2.9; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect confidentiality and integrity via vectors related to JSSE.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that this issue allows remote attackers to obtain sensitive information about encryption keys via a timing discrepancy during the TLS/SSL handshake."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.2.9:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_55:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_55:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0415",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102025",
          "name" : "102025",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64899",
          "name" : "64899",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2013-5902, CVE-2014-0410, CVE-2014-0418, and CVE-2014-0424."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0416",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/abe1cb2d27cb",
          "name" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/abe1cb2d27cb",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102017",
          "name" : "102017",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0026.html",
          "name" : "RHSA-2014:0026",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0027.html",
          "name" : "RHSA-2014:0027",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0097.html",
          "name" : "RHSA-2014:0097",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0136.html",
          "name" : "RHSA-2014:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56432",
          "name" : "56432",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56486",
          "name" : "56486",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59235",
          "name" : "59235",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59283",
          "name" : "59283",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59307",
          "name" : "59307",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59339",
          "name" : "59339",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60568",
          "name" : "60568",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64937",
          "name" : "64937",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2124-1",
          "name" : "USN-2124-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676978",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676978",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21677294",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21677294",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21677388",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21677388",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21679287",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21679287",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051912",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051912",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90349",
          "name" : "oracle-cpujan2014-cve20140416(90349)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect integrity via vectors related to JAAS.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to how principals are set for the Subject class, which allows attackers to escape the sandbox using deserialization of a crafted Subject instance."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_55:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_55:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0417",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.45",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102001",
          "name" : "102001",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0136.html",
          "name" : "RHSA-2014:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56484",
          "name" : "56484",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56486",
          "name" : "56486",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64932",
          "name" : "64932",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; JavaFX 2.2.45; and Java SE Embedded 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_55:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_55:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.45:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0418",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0.08",
                    "version_affected" : "<="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0.08",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_hpc_node_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_supplementary_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.5.z",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation_supplementary",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://osvdb.org/102012",
          "name" : "102012",
          "refsource" : "OSVDB",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ "Permissions Required" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64917",
          "name" : "64917",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90344",
          "name" : "oracle-cpujan2014-cve20140418(90344)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2013-5902, CVE-2014-0410, CVE-2014-0415, and CVE-2014-0424."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_hpc_node_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary_aus:6.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_supplementary_eus:6.5.z:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation_supplementary:6.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:hp:jdk:*:*:*:*:*:*:*:*",
            "versionEndIncluding" : "7.0.08"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:hp:jre:*:*:*:*:*:*:*:*",
            "versionEndIncluding" : "7.0.08"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.23:*:*:*:*:*:*:*"
          }, {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.31:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0422",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/101997",
          "name" : "101997",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0026.html",
          "name" : "RHSA-2014:0026",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0027.html",
          "name" : "RHSA-2014:0027",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0097.html",
          "name" : "RHSA-2014:0097",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0136.html",
          "name" : "RHSA-2014:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56432",
          "name" : "56432",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56486",
          "name" : "56486",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64921",
          "name" : "64921",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2124-1",
          "name" : "USN-2124-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051528",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051528",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JNDI.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to missing package access checks in the Naming / JNDI component, which allows attackers to escape the sandbox."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_55:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_55:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0423",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.7.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.2.9",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/995b32f013f5",
          "name" : "http://hg.openjdk.java.net/jdk7u/jdk7u/jdk/rev/995b32f013f5",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0026.html",
          "name" : "RHSA-2014:0026",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0027.html",
          "name" : "RHSA-2014:0027",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0097.html",
          "name" : "RHSA-2014:0097",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0136.html",
          "name" : "RHSA-2014:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56432",
          "name" : "56432",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56486",
          "name" : "56486",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56487",
          "name" : "56487",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59283",
          "name" : "59283",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60568",
          "name" : "60568",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64914",
          "name" : "64914",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2124-1",
          "name" : "USN-2124-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21677388",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21677388",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21679287",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21679287",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1053066",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1053066",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/90340",
          "name" : "oracle-cpujan2014-cve20140423(90340)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; JRockit R27.7.7 and R28.2.9; Java SE Embedded 7u45; and OpenJDK 7 allows remote authenticated users to affect confidentiality and availability via unknown vectors related to Beans.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that this issue is an XML External Entity (XXE) vulnerability in DocumentHandler.java, related to Beans decoding."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.2.9:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_55:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_55:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:P/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.5
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0424",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/102004",
          "name" : "102004",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64919",
          "name" : "64919",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2013-5902, CVE-2014-0410, CVE-2014-0415, and CVE-2014-0418."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0428",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://hg.openjdk.java.net/jdk7u/jdk7u/corba/rev/0a879f00b698",
          "name" : "http://hg.openjdk.java.net/jdk7u/jdk7u/corba/rev/0a879f00b698",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html",
          "name" : "SUSE-SU-2014:0246",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html",
          "name" : "SUSE-SU-2014:0266",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html",
          "name" : "SUSE-SU-2014:0451",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html",
          "name" : "openSUSE-SU-2014:0174",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html",
          "name" : "openSUSE-SU-2014:0177",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html",
          "name" : "openSUSE-SU-2014:0180",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402697611681&w=2",
          "name" : "SSRT101454",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=139402749111889&w=2",
          "name" : "SSRT101455",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://osvdb.org/101996",
          "name" : "101996",
          "refsource" : "OSVDB",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0026.html",
          "name" : "RHSA-2014:0026",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0027.html",
          "name" : "RHSA-2014:0027",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0030.html",
          "name" : "RHSA-2014:0030",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0097.html",
          "name" : "RHSA-2014:0097",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0134.html",
          "name" : "RHSA-2014:0134",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0135.html",
          "name" : "RHSA-2014:0135",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0136.html",
          "name" : "RHSA-2014:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56432",
          "name" : "56432",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56485",
          "name" : "56485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56486",
          "name" : "56486",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/56535",
          "name" : "56535",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64758",
          "name" : "64758",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/64935",
          "name" : "64935",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1029608",
          "name" : "1029608",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2089-1",
          "name" : "USN-2089-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2124-1",
          "name" : "USN-2124-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051519",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1051519",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA.  NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to \"insufficient security checks in IIOP streams,\" which allows attackers to escape the sandbox."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_65:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_55:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_55:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-01-15T16:08Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0429",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "juniper",
            "product" : {
              "product_data" : [ {
                "product_name" : "junos_space",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "15.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.3.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698",
          "name" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58974",
          "name" : "58974",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59058",
          "name" : "59058",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66856",
          "name" : "66856",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://www.ibm.com/support/docview.wss?uid=swg21675973",
          "name" : "https://www.ibm.com/support/docview.wss?uid=swg21675973",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html\n\n\"Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:13.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.8.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.1:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:juniper:junos_space:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "15.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T00:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0432",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66897",
          "name" : "66897",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u51 and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2014-0455 and CVE-2014-2402."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T00:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0446",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59058",
          "name" : "59058",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66903",
          "name" : "66903",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T00:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0448",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66904",
          "name" : "66904",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u51 and 8 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.6
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 4.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T00:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0449",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66907",
          "name" : "66907",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T00:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0451",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66879",
          "name" : "66879",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT, a different vulnerability than CVE-2014-2412."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0452",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66891",
          "name" : "66891",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAX-WS, a different vulnerability than CVE-2014-0458 and CVE-2014-2423."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0453",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.3.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698",
          "name" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59022",
          "name" : "59022",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59023",
          "name" : "59023",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59071",
          "name" : "59071",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59082",
          "name" : "59082",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59104",
          "name" : "59104",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59194",
          "name" : "59194",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59250",
          "name" : "59250",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59255",
          "name" : "59255",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59307",
          "name" : "59307",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59324",
          "name" : "59324",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59436",
          "name" : "59436",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59438",
          "name" : "59438",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59653",
          "name" : "59653",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59675",
          "name" : "59675",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59722",
          "name" : "59722",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59733",
          "name" : "59733",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60003",
          "name" : "60003",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60111",
          "name" : "60111",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60117",
          "name" : "60117",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60498",
          "name" : "60498",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60574",
          "name" : "60574",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60580",
          "name" : "60580",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61050",
          "name" : "61050",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61264",
          "name" : "61264",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.ibm.com/support/docview.wss?uid=swg21675343",
          "name" : "http://www.ibm.com/support/docview.wss?uid=swg21675343",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.ibm.com/support/docview.wss?uid=swg21675588",
          "name" : "http://www.ibm.com/support/docview.wss?uid=swg21675588",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.ibm.com/support/docview.wss?uid=swg21677387",
          "name" : "http://www.ibm.com/support/docview.wss?uid=swg21677387",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66914",
          "name" : "66914",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21673836",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21673836",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21674539",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21674539",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21675945",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21675945",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676190",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676190",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676373",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676373",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676672",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676672",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676703",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676703",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21677294",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21677294",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21678113",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21678113",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21679610",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21679610",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21679713",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21679713",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680387",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680387",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680750",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680750",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681018",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681018",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681047",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681047",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681256",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681256",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683484",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683484",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096132",
          "name" : "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096132",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://www.ibm.com/support/docview.wss?uid=swg21674530",
          "name" : "https://www.ibm.com/support/docview.wss?uid=swg21674530",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Security."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:13.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.8.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0454",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58974",
          "name" : "58974",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66905",
          "name" : "66905",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://www.ibm.com/support/docview.wss?uid=swg21675973",
          "name" : "https://www.ibm.com/support/docview.wss?uid=swg21675973",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u51 and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Security."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0455",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58974",
          "name" : "58974",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66899",
          "name" : "66899",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://www.ibm.com/support/docview.wss?uid=swg21675973",
          "name" : "https://www.ibm.com/support/docview.wss?uid=swg21675973",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u51 and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2014-0432 and CVE-2014-2402."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html \n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\"\n"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0456",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "juniper",
            "product" : {
              "product_data" : [ {
                "product_name" : "junos_space",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "15.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698",
          "name" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66877",
          "name" : "66877",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:juniper:junos_space:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "15.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:13.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0457",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.3.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58974",
          "name" : "58974",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59058",
          "name" : "59058",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66866",
          "name" : "66866",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://www.ibm.com/support/docview.wss?uid=swg21675973",
          "name" : "https://www.ibm.com/support/docview.wss?uid=swg21675973",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u61, SE 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.8.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.1:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0458",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66883",
          "name" : "66883",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAX-WS, a different vulnerability than CVE-2014-0452 and CVE-2014-2423."
        }, {
          "lang" : "en",
          "value" : "per: http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html\n\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0459",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66910",
          "name" : "66910",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u51 and 8, and Java SE Embedded 7u51, allows remote attackers to affect availability via unknown vectors related to 2D."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0460",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "juniper",
            "product" : {
              "product_data" : [ {
                "product_name" : "junos_space",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "15.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.3.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698",
          "name" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59022",
          "name" : "59022",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59023",
          "name" : "59023",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59058",
          "name" : "59058",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59071",
          "name" : "59071",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59082",
          "name" : "59082",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59250",
          "name" : "59250",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59255",
          "name" : "59255",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59307",
          "name" : "59307",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59436",
          "name" : "59436",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59516",
          "name" : "59516",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59642",
          "name" : "59642",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59704",
          "name" : "59704",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59705",
          "name" : "59705",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59706",
          "name" : "59706",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60003",
          "name" : "60003",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60111",
          "name" : "60111",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60117",
          "name" : "60117",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61264",
          "name" : "61264",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.ibm.com/support/docview.wss?uid=swg21675343",
          "name" : "http://www.ibm.com/support/docview.wss?uid=swg21675343",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.ibm.com/support/docview.wss?uid=swg21675588",
          "name" : "http://www.ibm.com/support/docview.wss?uid=swg21675588",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.ibm.com/support/docview.wss?uid=swg21677387",
          "name" : "http://www.ibm.com/support/docview.wss?uid=swg21677387",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66916",
          "name" : "66916",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21673836",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21673836",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21674539",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21674539",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676315",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676315",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676672",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676672",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21677294",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21677294",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21679713",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21679713",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681018",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681018",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681256",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681256",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683484",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683484",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686717",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686717",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality and integrity via vectors related to JNDI."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.8.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.1:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:juniper:junos_space:15.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-0461",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58974",
          "name" : "58974",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59058",
          "name" : "59058",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66902",
          "name" : "66902",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://www.ibm.com/support/docview.wss?uid=swg21675973",
          "name" : "https://www.ibm.com/support/docview.wss?uid=swg21675973",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-10401",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://github.com/perl5-dbi/dbi/commit/caedc0d7d602f5b2ae5efc1b00f39efeafb7b05a",
          "name" : "https://github.com/perl5-dbi/dbi/commit/caedc0d7d602f5b2ae5efc1b00f39efeafb7b05a",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://metacpan.org/pod/distribution/DBI/Changes#Changes-in-DBI-1.632-9th-Nov-2014",
          "name" : "https://metacpan.org/pod/distribution/DBI/Changes#Changes-in-DBI-1.632-9th-Nov-2014",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://rt.cpan.org/Public/Bug/Display.html?id=99508",
          "name" : "https://rt.cpan.org/Public/Bug/Display.html?id=99508",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An issue was discovered in the DBI module before 1.632 for Perl. DBD::File drivers can open files from folders other than those specifically passed via the f_dir attribute."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ ]
    },
    "impact" : { },
    "publishedDate" : "2020-09-11T19:15Z",
    "lastModifiedDate" : "2020-09-11T20:18Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-10402",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://rt.cpan.org/Public/Bug/Display.html?id=99508#txn-1911590",
          "name" : "https://rt.cpan.org/Public/Bug/Display.html?id=99508#txn-1911590",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An issue was discovered in the DBI module through 1.643 for Perl. DBD::File drivers can open files from folders other than those specifically passed via the f_dir attribute in the data source name (DSN). NOTE: this issue exists because of an incomplete fix for CVE-2014-10401."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ ]
    },
    "impact" : { },
    "publishedDate" : "2020-09-16T16:15Z",
    "lastModifiedDate" : "2020-09-16T17:01Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-1420",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-502"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://bazaar.launchpad.net/~ubuntu-sdk-team/ubuntu-ui-toolkit/staging/revision/1182",
          "name" : "http://bazaar.launchpad.net/~ubuntu-sdk-team/ubuntu-ui-toolkit/staging/revision/1182",
          "refsource" : "UBUNTU",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://launchpad.net/bugs/1348241",
          "name" : "https://launchpad.net/bugs/1348241",
          "refsource" : "UBUNTU",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "On desktop, Ubuntu UI Toolkit's StateSaver would serialise data on tmp/ files which an attacker could use to expose potentially sensitive data. StateSaver would also open files without the O_EXCL flag. An attacker could exploit this to launch a symlink attack, though this is partially mitigated by symlink and hardlink restrictions in Ubuntu. Fixed in 1.1.1188+14.10.20140813.4-0ubuntu1."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:canonical:ubuntu-ui-toolkit:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "1.1.1188\\+14.10.20140813.4-0ubuntu1"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.1
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.9,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-11T00:15Z",
    "lastModifiedDate" : "2020-09-16T15:10Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2397",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66893",
          "name" : "66893",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u51 and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2398",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.51",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.3.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59058",
          "name" : "59058",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66920",
          "name" : "66920",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and JRockit R27.8.1 and R28.3.1 allows remote authenticated users to affect integrity via unknown vectors related to Javadoc."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.51:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.8.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:S/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 3.5
        },
        "severity" : "LOW",
        "exploitabilityScore" : 6.8,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2401",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.51",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58974",
          "name" : "58974",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59058",
          "name" : "59058",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66911",
          "name" : "66911",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://www.ibm.com/support/docview.wss?uid=swg21675973",
          "name" : "https://www.ibm.com/support/docview.wss?uid=swg21675973",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality via unknown vectors related to 2D."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.51:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2402",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66898",
          "name" : "66898",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u51 and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2014-0432 and CVE-2014-0455."
        }, {
          "lang" : "en",
          "value" : "per: http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html\n\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2403",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66918",
          "name" : "66918",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality via vectors related to JAXP."
        }, {
          "lang" : "en",
          "value" : "per: http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html\n\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2409",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66915",
          "name" : "66915",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality and integrity via unknown vectors related to Deployment."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 6.4
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T01:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2412",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66873",
          "name" : "66873",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, SE 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT, a different vulnerability than CVE-2014-0451."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:13.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T02:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2413",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "hp-ux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "b.11.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "b.11.31",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66917",
          "name" : "66917",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u51 and 8, and Java SE Embedded 7u51, allows remote attackers to affect integrity via unknown vectors related to Libraries."
        }, {
          "lang" : "en",
          "value" : "per: http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html\n\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.23:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.31:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:13.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T02:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2414",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "ibm",
            "product" : {
              "product_data" : [ {
                "product_name" : "infosphere_streams",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66894",
          "name" : "66894",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAXB."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.1.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.2.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:13.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T02:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2420",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "ibm",
            "product" : {
              "product_data" : [ {
                "product_name" : "infosphere_streams",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "smartcloud_provisioning",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "hp-ux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "b.11.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "b.11.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "b.11.31",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://secunia.com/advisories/60111",
          "name" : "60111",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.ibm.com/support/docview.wss?uid=swg21677387",
          "name" : "http://www.ibm.com/support/docview.wss?uid=swg21677387",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66919",
          "name" : "66919",
          "refsource" : "BID",
          "tags" : [ "VDB Entry" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect integrity via unknown vectors related to Deployment."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.1.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.2.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.11:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.23:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.31:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:smartcloud_provisioning:1.2.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:smartcloud_provisioning:2.1.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T02:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2421",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.51",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59058",
          "name" : "59058",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66881",
          "name" : "66881",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21676746",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.51:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T02:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2422",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.51",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "hp-ux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "b.11.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "b.11.31",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66912",
          "name" : "66912",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u51 and 8, and JavaFX 2.2.51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors."
        }, {
          "lang" : "en",
          "value" : "per: http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.23:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.31:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.51:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T02:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2423",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "ibm",
            "product" : {
              "product_data" : [ {
                "product_name" : "infosphere_streams",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "hp-ux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "b.11.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "b.11.31",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66887",
          "name" : "66887",
          "refsource" : "BID",
          "tags" : [ "VDB Entry" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ "VDB Entry" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ "VDB Entry" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAX-WS, a different vulnerability than CVE-2014-0452 and CVE-2014-0458."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.1.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.2.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.23:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.31:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:13.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T02:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2427",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "ibm",
            "product" : {
              "product_data" : [ {
                "product_name" : "infosphere_streams",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0675.html",
          "name" : "RHSA-2014:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-0685.html",
          "name" : "RHSA-2014:0685",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58415",
          "name" : "58415",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201406-32.xml",
          "name" : "GLSA-201406-32",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2912",
          "name" : "DSA-2912",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66909",
          "name" : "66909",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2187-1",
          "name" : "USN-2187-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2191-1",
          "name" : "USN-2191-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Sound."
        }, {
          "lang" : "en",
          "value" : "per: http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html\n\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.1.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.2.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:13.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_61:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T02:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2428",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "ibm",
            "product" : {
              "product_data" : [ {
                "product_name" : "infosphere_streams",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "hp-ux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "b.11.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "b.11.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "b.11.31",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "SSRT101667",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "SSRT101668",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/66870",
          "name" : "66870",
          "refsource" : "BID",
          "tags" : [ "VDB Entry" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21672080",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0413",
          "name" : "RHSA-2014:0413",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0414",
          "name" : "RHSA-2014:0414",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.1.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:infosphere_streams:3.2.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.11:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.23:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.31:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.6
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 4.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-04-16T02:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2483",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "openjdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://hg.openjdk.java.net/jdk7u/jdk7u/hotspot/rev/848481af9003",
          "name" : "http://hg.openjdk.java.net/jdk7u/jdk7u/hotspot/rev/848481af9003",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Patch" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68608",
          "name" : "68608",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1119626",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1119626",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in the Java SE component in Oracle Java SE Java SE 7u60 and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2014-4223. NOTE: the previous information is from the July 2014 CPU. Oracle has not commented on another vendor's claim that the issue is related to improper restriction of the \"use of privileged annotations.\""
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:openjdk:1.7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T05:10Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-2490",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "hp-ux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "b.11.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "b.11.31",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://secunia.com/advisories/60129",
          "name" : "60129",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2980",
          "name" : "DSA-2980",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68645",
          "name" : "68645",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in the Java SE component in Oracle Java SE 7u60 and SE 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.23:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.31:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T05:10Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-3539",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "rope_project",
            "product" : {
              "product_data" : [ {
                "product_name" : "rope",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.10.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.10.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.10.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.10.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.10.7",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2015/02/07/1",
          "name" : "[oss-security] 20150206 python-rope: pickle.load of remotely supplied data with no authentication required",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1116485",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1116485",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "base/oi/doa.py in the Rope library in CPython (aka Python) allows remote attackers to execute arbitrary code by leveraging an unsafe call to pickle.load."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:rope_project:rope:*:*:*:*:*:python:*:*",
          "versionEndExcluding" : "0.11.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-04-06T16:29Z",
    "lastModifiedDate" : "2020-09-09T15:11Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4208",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59680",
          "name" : "59680",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59924",
          "name" : "59924",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59987",
          "name" : "59987",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60081",
          "name" : "60081",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60317",
          "name" : "60317",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60622",
          "name" : "60622",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60817",
          "name" : "60817",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61293",
          "name" : "61293",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61577",
          "name" : "61577",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61640",
          "name" : "61640",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68580",
          "name" : "68580",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686142",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686142",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94607",
          "name" : "oracle-cpujul2014-cve20144208(94607)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in the Java SE component in Oracle Java SE 7u60 and 8u5 allows remote attackers to affect integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2014-4220."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T05:10Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4209",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "HPSBUX03092",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59404",
          "name" : "59404",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59680",
          "name" : "59680",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59924",
          "name" : "59924",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59985",
          "name" : "59985",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59986",
          "name" : "59986",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59987",
          "name" : "59987",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60081",
          "name" : "60081",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60129",
          "name" : "60129",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60245",
          "name" : "60245",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60317",
          "name" : "60317",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60622",
          "name" : "60622",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60817",
          "name" : "60817",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61577",
          "name" : "61577",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61640",
          "name" : "61640",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2980",
          "name" : "DSA-2980",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68639",
          "name" : "68639",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0908",
          "name" : "RHSA-2014:0908",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94596",
          "name" : "oracle-cpujul2014-cve20144209(94596)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality and integrity via vectors related to JMX."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 6.4
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T05:10Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4216",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "HPSBUX03092",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60129",
          "name" : "60129",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60245",
          "name" : "60245",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2980",
          "name" : "DSA-2980",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68562",
          "name" : "68562",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0908",
          "name" : "RHSA-2014:0908",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94591",
          "name" : "oracle-cpujul2014-cve20144216(94591)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T05:10Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4218",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "HPSBUX03092",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59404",
          "name" : "59404",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59680",
          "name" : "59680",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59924",
          "name" : "59924",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59985",
          "name" : "59985",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59986",
          "name" : "59986",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59987",
          "name" : "59987",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60081",
          "name" : "60081",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60129",
          "name" : "60129",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60245",
          "name" : "60245",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60317",
          "name" : "60317",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60622",
          "name" : "60622",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60817",
          "name" : "60817",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61577",
          "name" : "61577",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61640",
          "name" : "61640",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2980",
          "name" : "DSA-2980",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68583",
          "name" : "68583",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0908",
          "name" : "RHSA-2014:0908",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94599",
          "name" : "oracle-cpujul2014-cve20144218(94599)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5 allows remote attackers to affect integrity via unknown vectors related to Libraries."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T05:10Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4219",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "HPSBUX03092",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59404",
          "name" : "59404",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59680",
          "name" : "59680",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59924",
          "name" : "59924",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59985",
          "name" : "59985",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59986",
          "name" : "59986",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59987",
          "name" : "59987",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60081",
          "name" : "60081",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60129",
          "name" : "60129",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60245",
          "name" : "60245",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60317",
          "name" : "60317",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60622",
          "name" : "60622",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60817",
          "name" : "60817",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61577",
          "name" : "61577",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61640",
          "name" : "61640",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2980",
          "name" : "DSA-2980",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68620",
          "name" : "68620",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0908",
          "name" : "RHSA-2014:0908",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94589",
          "name" : "oracle-cpujul2014-cve20144219(94589)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T05:10Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4220",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59680",
          "name" : "59680",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59924",
          "name" : "59924",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59987",
          "name" : "59987",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60081",
          "name" : "60081",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60317",
          "name" : "60317",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60622",
          "name" : "60622",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60817",
          "name" : "60817",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61577",
          "name" : "61577",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61640",
          "name" : "61640",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68576",
          "name" : "68576",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94598",
          "name" : "oracle-cpujul2014-cve20144220(94598)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u60 and 8u5 allows remote attackers to affect integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2014-4208."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T05:10Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4221",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59680",
          "name" : "59680",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59924",
          "name" : "59924",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59987",
          "name" : "59987",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60081",
          "name" : "60081",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60317",
          "name" : "60317",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60622",
          "name" : "60622",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60817",
          "name" : "60817",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61577",
          "name" : "61577",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61640",
          "name" : "61640",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68571",
          "name" : "68571",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94604",
          "name" : "oracle-cpujul2014-cve20144221(94604)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u60 and 8u5 allows remote attackers to affect confidentiality via unknown vectors related to Libraries."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T05:10Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4223",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68590",
          "name" : "68590",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94594",
          "name" : "oracle-cpujul2014-cve20144223(94594)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u60 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2014-2483."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T05:10Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4227",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "HPSBUX03092",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59404",
          "name" : "59404",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59680",
          "name" : "59680",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59924",
          "name" : "59924",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59986",
          "name" : "59986",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59987",
          "name" : "59987",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60081",
          "name" : "60081",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60245",
          "name" : "60245",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60317",
          "name" : "60317",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60622",
          "name" : "60622",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60817",
          "name" : "60817",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61577",
          "name" : "61577",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61640",
          "name" : "61640",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68603",
          "name" : "68603",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0908",
          "name" : "RHSA-2014:0908",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94588",
          "name" : "oracle-cpujul2014-cve20144227(94588)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T05:10Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4244",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.3.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "HPSBUX03092",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58830",
          "name" : "58830",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59404",
          "name" : "59404",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59503",
          "name" : "59503",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59680",
          "name" : "59680",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59924",
          "name" : "59924",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59985",
          "name" : "59985",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59986",
          "name" : "59986",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59987",
          "name" : "59987",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60002",
          "name" : "60002",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60031",
          "name" : "60031",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60032",
          "name" : "60032",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60081",
          "name" : "60081",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60129",
          "name" : "60129",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60245",
          "name" : "60245",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60317",
          "name" : "60317",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60326",
          "name" : "60326",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60335",
          "name" : "60335",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60497",
          "name" : "60497",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60622",
          "name" : "60622",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60817",
          "name" : "60817",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60831",
          "name" : "60831",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60846",
          "name" : "60846",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60890",
          "name" : "60890",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61050",
          "name" : "61050",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61215",
          "name" : "61215",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61254",
          "name" : "61254",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61264",
          "name" : "61264",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61278",
          "name" : "61278",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61293",
          "name" : "61293",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61294",
          "name" : "61294",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61417",
          "name" : "61417",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61469",
          "name" : "61469",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61577",
          "name" : "61577",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61640",
          "name" : "61640",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61846",
          "name" : "61846",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/62314",
          "name" : "62314",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2980",
          "name" : "DSA-2980",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.ibm.com/support/docview.wss?uid=swg21683518",
          "name" : "http://www.ibm.com/support/docview.wss?uid=swg21683518",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68624",
          "name" : "68624",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681379",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681379",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681966",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681966",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683338",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683338",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683429",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683429",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683438",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683438",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683484",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683484",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685121",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685121",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685122",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685122",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685178",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685178",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685242",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685242",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686142",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686142",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688893",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688893",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21689593",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21689593",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0908",
          "name" : "RHSA-2014:0908",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94605",
          "name" : "oracle-cpujul2014-cve20144244(94605)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10083",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10083",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.ibm.com/support/docview.wss?uid=swg21680418",
          "name" : "https://www.ibm.com/support/docview.wss?uid=swg21680418",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5, and JRockit R27.8.2 and JRockit R28.3.2, allows remote attackers to affect confidentiality and integrity via unknown vectors related to Security."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.8.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T11:17Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4247",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68626",
          "name" : "68626",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94592",
          "name" : "oracle-cpujul2014-cve20144247(94592)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to JavaFX."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T11:17Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4252",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "HPSBUX03092",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59404",
          "name" : "59404",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59680",
          "name" : "59680",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59924",
          "name" : "59924",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59985",
          "name" : "59985",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59986",
          "name" : "59986",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59987",
          "name" : "59987",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60081",
          "name" : "60081",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60129",
          "name" : "60129",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60245",
          "name" : "60245",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60317",
          "name" : "60317",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60622",
          "name" : "60622",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60817",
          "name" : "60817",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61577",
          "name" : "61577",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61640",
          "name" : "61640",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2980",
          "name" : "DSA-2980",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68642",
          "name" : "68642",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0908",
          "name" : "RHSA-2014:0908",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94600",
          "name" : "oracle-cpujul2014-cve20144252(94600)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality via unknown vectors related to Security."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T11:17Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4262",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "HPSBUX03092",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59404",
          "name" : "59404",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59680",
          "name" : "59680",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59924",
          "name" : "59924",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59985",
          "name" : "59985",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59986",
          "name" : "59986",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59987",
          "name" : "59987",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60081",
          "name" : "60081",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60129",
          "name" : "60129",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60245",
          "name" : "60245",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60317",
          "name" : "60317",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60622",
          "name" : "60622",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60817",
          "name" : "60817",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61577",
          "name" : "61577",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61640",
          "name" : "61640",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2980",
          "name" : "DSA-2980",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68599",
          "name" : "68599",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0908",
          "name" : "RHSA-2014:0908",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94595",
          "name" : "oracle-cpujul2014-cve20144262(94595)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T11:17Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4263",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.3.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "HPSBUX03092",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/58830",
          "name" : "58830",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59404",
          "name" : "59404",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59503",
          "name" : "59503",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59680",
          "name" : "59680",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59924",
          "name" : "59924",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59985",
          "name" : "59985",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59986",
          "name" : "59986",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59987",
          "name" : "59987",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60002",
          "name" : "60002",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60031",
          "name" : "60031",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60032",
          "name" : "60032",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60081",
          "name" : "60081",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60129",
          "name" : "60129",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60180",
          "name" : "60180",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60245",
          "name" : "60245",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60317",
          "name" : "60317",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60326",
          "name" : "60326",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60335",
          "name" : "60335",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60497",
          "name" : "60497",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60622",
          "name" : "60622",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60817",
          "name" : "60817",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60831",
          "name" : "60831",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60839",
          "name" : "60839",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60846",
          "name" : "60846",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60890",
          "name" : "60890",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61215",
          "name" : "61215",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61254",
          "name" : "61254",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61264",
          "name" : "61264",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61278",
          "name" : "61278",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61293",
          "name" : "61293",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61294",
          "name" : "61294",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61469",
          "name" : "61469",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61577",
          "name" : "61577",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61640",
          "name" : "61640",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61846",
          "name" : "61846",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/62314",
          "name" : "62314",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/62319",
          "name" : "62319",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2980",
          "name" : "DSA-2980",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.ibm.com/support/docview.wss?uid=swg21681644",
          "name" : "http://www.ibm.com/support/docview.wss?uid=swg21681644",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.ibm.com/support/docview.wss?uid=swg21683518",
          "name" : "http://www.ibm.com/support/docview.wss?uid=swg21683518",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68636",
          "name" : "68636",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681379",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681379",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681966",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21681966",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683338",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683338",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683429",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683429",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683438",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683438",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683484",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21683484",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685121",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685121",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685122",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685122",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685178",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685178",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685242",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21685242",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686142",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686142",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688893",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688893",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21689593",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21689593",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21691089",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21691089",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096529",
          "name" : "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096529",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0908",
          "name" : "RHSA-2014:0908",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94606",
          "name" : "oracle-cpujul2014-cve20144263(94606)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10083",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10083",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.ibm.com/support/docview.wss?uid=swg21680418",
          "name" : "https://www.ibm.com/support/docview.wss?uid=swg21680418",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5, and JRockit R27.8.2 and R28.3.2, allows remote attackers to affect confidentiality and integrity via unknown vectors related to \"Diffie-Hellman key agreement.\""
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to Diffie-Hellman key agreement in client and server deployment of Java.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.8.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.2:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T11:17Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4264",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60326",
          "name" : "60326",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60890",
          "name" : "60890",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68612",
          "name" : "68612",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94603",
          "name" : "oracle-cpujul2014-cve20144264(94603)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10083",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10083",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u60 and 8u5 allows remote attackers to affect availability via unknown vectors related to Security."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T11:17Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4265",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "HPSBUX03092",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59404",
          "name" : "59404",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59680",
          "name" : "59680",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59924",
          "name" : "59924",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59986",
          "name" : "59986",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59987",
          "name" : "59987",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60081",
          "name" : "60081",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60245",
          "name" : "60245",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60317",
          "name" : "60317",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60622",
          "name" : "60622",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60817",
          "name" : "60817",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61577",
          "name" : "61577",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61640",
          "name" : "61640",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68632",
          "name" : "68632",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0908",
          "name" : "RHSA-2014:0908",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94597",
          "name" : "oracle-cpujul2014-cve20144265(94597)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u75, 7u60, and 8u5 allows remote attackers to affect integrity via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T11:17Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4266",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59680",
          "name" : "59680",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59924",
          "name" : "59924",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59987",
          "name" : "59987",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60081",
          "name" : "60081",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60129",
          "name" : "60129",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60317",
          "name" : "60317",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60622",
          "name" : "60622",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60817",
          "name" : "60817",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61577",
          "name" : "61577",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61640",
          "name" : "61640",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2980",
          "name" : "DSA-2980",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68596",
          "name" : "68596",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2014:0902",
          "name" : "RHSA-2014:0902",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94601",
          "name" : "oracle-cpujul2014-cve20144266(94601)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u60 and 8u5 allows remote attackers to affect integrity via unknown vectors related to Serviceability."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T11:17Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4268",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852886808946&w=2",
          "name" : "HPSBUX03091",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=140852974709252&w=2",
          "name" : "HPSBUX03092",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://seclists.org/fulldisclosure/2014/Dec/23",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59404",
          "name" : "59404",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/59680",
          "name" : "59680",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60081",
          "name" : "60081",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60129",
          "name" : "60129",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60317",
          "name" : "60317",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60485",
          "name" : "60485",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60622",
          "name" : "60622",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60812",
          "name" : "60812",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60817",
          "name" : "60817",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61577",
          "name" : "61577",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61640",
          "name" : "61640",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2980",
          "name" : "DSA-2980",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-2987",
          "name" : "DSA-2987",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/534161/100/0/threaded",
          "name" : "20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/68615",
          "name" : "68615",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1030577",
          "name" : "1030577",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2014-0012.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21680334",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686383",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21686824",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/94602",
          "name" : "oracle-cpujul2014-cve20144268(94602)",
          "refsource" : "XF",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality via unknown vectors related to Swing."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html\n\n\"Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_65:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_5:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-07-17T11:17Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-4288",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1877.html",
          "name" : "RHSA-2014:1877",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70470",
          "name" : "70470",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-6493, CVE-2014-6503, and CVE-2014-6532."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update20:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.6
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 4.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T15:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6456",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70522",
          "name" : "70522",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u67 and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update20:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T15:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6457",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.3.3",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00013.html",
          "name" : "SUSE-SU-2014:1422",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1620.html",
          "name" : "RHSA-2014:1620",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1633.html",
          "name" : "RHSA-2014:1633",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1634.html",
          "name" : "RHSA-2014:1634",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1636.html",
          "name" : "RHSA-2014:1636",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1877.html",
          "name" : "RHSA-2014:1877",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1881.html",
          "name" : "RHSA-2014:1881",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60414",
          "name" : "60414",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60416",
          "name" : "60416",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60417",
          "name" : "60417",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61018",
          "name" : "61018",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61020",
          "name" : "61020",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61143",
          "name" : "61143",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61346",
          "name" : "61346",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61629",
          "name" : "61629",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61631",
          "name" : "61631",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61635",
          "name" : "61635",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61928",
          "name" : "61928",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3077",
          "name" : "DSA-3077",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3080",
          "name" : "DSA-3080",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70538",
          "name" : "70538",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2386-1",
          "name" : "USN-2386-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-1",
          "name" : "USN-2388-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-2",
          "name" : "USN-2388-2",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21692299",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21692299",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3, and R28.3.3 allows remote attackers to affect confidentiality and integrity via vectors related to JSSE."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.8.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.3:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update20:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:N/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T15:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6458",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1877.html",
          "name" : "RHSA-2014:1877",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61635",
          "name" : "61635",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70460",
          "name" : "70460",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 6.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.4,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T15:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6466",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70484",
          "name" : "70484",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when running on Internet Explorer, allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update20:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 6.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.4,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T15:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6468",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1636.html",
          "name" : "RHSA-2014:1636",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60416",
          "name" : "60416",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61928",
          "name" : "61928",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70488",
          "name" : "70488",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21692299",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21692299",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u20 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update20:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:N/I:N/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 6.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T15:55Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6476",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70531",
          "name" : "70531",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u67 and 8u20 allows remote attackers to affect integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2014-6527."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update20:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T15:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6485",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61632",
          "name" : "61632",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70519",
          "name" : "70519",
          "refsource" : "BID",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u20 and JavaFX 2.2.65 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T15:55Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6492",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "mozilla",
            "product" : {
              "product_data" : [ {
                "product_name" : "firefox",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1877.html",
          "name" : "RHSA-2014:1877",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70456",
          "name" : "70456",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when running on Firefox, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update20:*:*:*:*:*:*"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:mozilla:firefox:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.6
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 4.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6493",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1877.html",
          "name" : "RHSA-2014:1877",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70468",
          "name" : "70468",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-4288, CVE-2014-6503, and CVE-2014-6532."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.6
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 4.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6502",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00013.html",
          "name" : "SUSE-SU-2014:1422",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1620.html",
          "name" : "RHSA-2014:1620",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1633.html",
          "name" : "RHSA-2014:1633",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1634.html",
          "name" : "RHSA-2014:1634",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1636.html",
          "name" : "RHSA-2014:1636",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1877.html",
          "name" : "RHSA-2014:1877",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1881.html",
          "name" : "RHSA-2014:1881",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60414",
          "name" : "60414",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60416",
          "name" : "60416",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60417",
          "name" : "60417",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61018",
          "name" : "61018",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61020",
          "name" : "61020",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61143",
          "name" : "61143",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61346",
          "name" : "61346",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61629",
          "name" : "61629",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61928",
          "name" : "61928",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3077",
          "name" : "DSA-3077",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3080",
          "name" : "DSA-3080",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70533",
          "name" : "70533",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2386-1",
          "name" : "USN-2386-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-1",
          "name" : "USN-2388-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-2",
          "name" : "USN-2388-2",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect integrity via unknown vectors related to Libraries."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6503",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1877.html",
          "name" : "RHSA-2014:1877",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70518",
          "name" : "70518",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-4288, CVE-2014-6493, and CVE-2014-6532."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6504",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00013.html",
          "name" : "SUSE-SU-2014:1422",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1620.html",
          "name" : "RHSA-2014:1620",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1633.html",
          "name" : "RHSA-2014:1633",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1634.html",
          "name" : "RHSA-2014:1634",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1636.html",
          "name" : "RHSA-2014:1636",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60414",
          "name" : "60414",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60416",
          "name" : "60416",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60417",
          "name" : "60417",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61018",
          "name" : "61018",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61020",
          "name" : "61020",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61143",
          "name" : "61143",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61346",
          "name" : "61346",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61629",
          "name" : "61629",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61928",
          "name" : "61928",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3077",
          "name" : "DSA-3077",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3080",
          "name" : "DSA-3080",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70564",
          "name" : "70564",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2386-1",
          "name" : "USN-2386-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-1",
          "name" : "USN-2388-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-2",
          "name" : "USN-2388-2",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, and 7u67, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality via unknown vectors related to Hotspot."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6506",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00013.html",
          "name" : "SUSE-SU-2014:1422",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1620.html",
          "name" : "RHSA-2014:1620",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1633.html",
          "name" : "RHSA-2014:1633",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1634.html",
          "name" : "RHSA-2014:1634",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1636.html",
          "name" : "RHSA-2014:1636",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1877.html",
          "name" : "RHSA-2014:1877",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1881.html",
          "name" : "RHSA-2014:1881",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60414",
          "name" : "60414",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60416",
          "name" : "60416",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60417",
          "name" : "60417",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61018",
          "name" : "61018",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61020",
          "name" : "61020",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61143",
          "name" : "61143",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61346",
          "name" : "61346",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61629",
          "name" : "61629",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61928",
          "name" : "61928",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3077",
          "name" : "DSA-3077",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3080",
          "name" : "DSA-3080",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70556",
          "name" : "70556",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2386-1",
          "name" : "USN-2386-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-1",
          "name" : "USN-2388-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-2",
          "name" : "USN-2388-2",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6511",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00013.html",
          "name" : "SUSE-SU-2014:1422",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1620.html",
          "name" : "RHSA-2014:1620",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1633.html",
          "name" : "RHSA-2014:1633",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1634.html",
          "name" : "RHSA-2014:1634",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1636.html",
          "name" : "RHSA-2014:1636",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1877.html",
          "name" : "RHSA-2014:1877",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1881.html",
          "name" : "RHSA-2014:1881",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60414",
          "name" : "60414",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60416",
          "name" : "60416",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60417",
          "name" : "60417",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61018",
          "name" : "61018",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61020",
          "name" : "61020",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61143",
          "name" : "61143",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61346",
          "name" : "61346",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61928",
          "name" : "61928",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3077",
          "name" : "DSA-3077",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3080",
          "name" : "DSA-3080",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70548",
          "name" : "70548",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2386-1",
          "name" : "USN-2386-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-1",
          "name" : "USN-2388-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-2",
          "name" : "USN-2388-2",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality via unknown vectors related to 2D."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6512",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.3.3",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00013.html",
          "name" : "SUSE-SU-2014:1422",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1620.html",
          "name" : "RHSA-2014:1620",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1633.html",
          "name" : "RHSA-2014:1633",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1634.html",
          "name" : "RHSA-2014:1634",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1636.html",
          "name" : "RHSA-2014:1636",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1877.html",
          "name" : "RHSA-2014:1877",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1881.html",
          "name" : "RHSA-2014:1881",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60414",
          "name" : "60414",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60416",
          "name" : "60416",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60417",
          "name" : "60417",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61018",
          "name" : "61018",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61020",
          "name" : "61020",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61143",
          "name" : "61143",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61346",
          "name" : "61346",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61629",
          "name" : "61629",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61631",
          "name" : "61631",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61928",
          "name" : "61928",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3077",
          "name" : "DSA-3077",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3080",
          "name" : "DSA-3080",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70567",
          "name" : "70567",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2386-1",
          "name" : "USN-2386-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-1",
          "name" : "USN-2388-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-2",
          "name" : "USN-2388-2",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10092",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10092",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3 and R28.3.3 allows remote attackers to affect integrity via unknown vectors related to Libraries."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.8.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.3:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update20:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6513",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00013.html",
          "name" : "SUSE-SU-2014:1422",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61629",
          "name" : "61629",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70569",
          "name" : "70569",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2386-1",
          "name" : "USN-2386-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-1",
          "name" : "USN-2388-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-2",
          "name" : "USN-2388-2",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6515",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1877.html",
          "name" : "RHSA-2014:1877",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70565",
          "name" : "70565",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect integrity via unknown vectors related to Deployment."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6517",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.3.3",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00013.html",
          "name" : "SUSE-SU-2014:1422",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1620.html",
          "name" : "RHSA-2014:1620",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1633.html",
          "name" : "RHSA-2014:1633",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1634.html",
          "name" : "RHSA-2014:1634",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1636.html",
          "name" : "RHSA-2014:1636",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60414",
          "name" : "60414",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60416",
          "name" : "60416",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60417",
          "name" : "60417",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61018",
          "name" : "61018",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61020",
          "name" : "61020",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61143",
          "name" : "61143",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61346",
          "name" : "61346",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61629",
          "name" : "61629",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61631",
          "name" : "61631",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61928",
          "name" : "61928",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3077",
          "name" : "DSA-3077",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3080",
          "name" : "DSA-3080",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70552",
          "name" : "70552",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2386-1",
          "name" : "USN-2386-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-1",
          "name" : "USN-2388-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-2",
          "name" : "USN-2388-2",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10092",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10092",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and Jrockit R27.8.3 and R28.3.3 allows remote attackers to affect confidentiality via vectors related to JAXP."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.8.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.3:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6519",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00013.html",
          "name" : "SUSE-SU-2014:1422",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1620.html",
          "name" : "RHSA-2014:1620",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1633.html",
          "name" : "RHSA-2014:1633",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1634.html",
          "name" : "RHSA-2014:1634",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1636.html",
          "name" : "RHSA-2014:1636",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60414",
          "name" : "60414",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60416",
          "name" : "60416",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60417",
          "name" : "60417",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61018",
          "name" : "61018",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61020",
          "name" : "61020",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61143",
          "name" : "61143",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61346",
          "name" : "61346",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61629",
          "name" : "61629",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61928",
          "name" : "61928",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3077",
          "name" : "DSA-3077",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3080",
          "name" : "DSA-3080",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70570",
          "name" : "70570",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2386-1",
          "name" : "USN-2386-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-1",
          "name" : "USN-2388-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-2",
          "name" : "USN-2388-2",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u67 and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect integrity via unknown vectors related to Hotspot."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6527",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61346",
          "name" : "61346",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70560",
          "name" : "70560",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-1",
          "name" : "USN-2388-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-2",
          "name" : "USN-2388-2",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u67 and 8u20 allows remote attackers to affect integrity via unknown vectors related to Deployment, a different vulnerability than CVE-2014-6476."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6531",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00013.html",
          "name" : "SUSE-SU-2014:1422",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1620.html",
          "name" : "RHSA-2014:1620",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1633.html",
          "name" : "RHSA-2014:1633",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1634.html",
          "name" : "RHSA-2014:1634",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1636.html",
          "name" : "RHSA-2014:1636",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1877.html",
          "name" : "RHSA-2014:1877",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1881.html",
          "name" : "RHSA-2014:1881",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60414",
          "name" : "60414",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60416",
          "name" : "60416",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60417",
          "name" : "60417",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61018",
          "name" : "61018",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61020",
          "name" : "61020",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61143",
          "name" : "61143",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61346",
          "name" : "61346",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61629",
          "name" : "61629",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61928",
          "name" : "61928",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3077",
          "name" : "DSA-3077",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3080",
          "name" : "DSA-3080",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70572",
          "name" : "70572",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2386-1",
          "name" : "USN-2386-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-1",
          "name" : "USN-2388-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-2",
          "name" : "USN-2388-2",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality via unknown vectors related to Libraries."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6532",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1877.html",
          "name" : "RHSA-2014:1877",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70507",
          "name" : "70507",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2014-4288, CVE-2014-6493, and CVE-2014-6503."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update20:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6549",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72137",
          "name" : "72137",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "name" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries."
        }, {
          "lang" : "en",
          "value" : "As per: http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T15:28Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6558",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.3.3",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1633.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1634.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00013.html",
          "name" : "SUSE-SU-2014:1422",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-11/msg00021.html",
          "name" : "SUSE-SU-2014:1526",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2014-12/msg00002.html",
          "name" : "SUSE-SU-2014:1549",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html",
          "name" : "SUSE-SU-2015:0344",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00027.html",
          "name" : "SUSE-SU-2015:0345",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html",
          "name" : "SUSE-SU-2015:0376",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html",
          "name" : "SUSE-SU-2015:0392",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=141775382904016&w=2",
          "name" : "SSRT101770",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1620.html",
          "name" : "RHSA-2014:1620",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1633.html",
          "name" : "RHSA-2014:1633",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1634.html",
          "name" : "RHSA-2014:1634",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1636.html",
          "name" : "RHSA-2014:1636",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1657.html",
          "name" : "RHSA-2014:1657",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1658.html",
          "name" : "RHSA-2014:1658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1876.html",
          "name" : "RHSA-2014:1876",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1877.html",
          "name" : "RHSA-2014:1877",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1880.html",
          "name" : "RHSA-2014:1880",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1881.html",
          "name" : "RHSA-2014:1881",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1882.html",
          "name" : "RHSA-2014:1882",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60414",
          "name" : "60414",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60416",
          "name" : "60416",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60417",
          "name" : "60417",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61018",
          "name" : "61018",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61020",
          "name" : "61020",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61143",
          "name" : "61143",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61163",
          "name" : "61163",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61164",
          "name" : "61164",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61346",
          "name" : "61346",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61629",
          "name" : "61629",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61631",
          "name" : "61631",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61928",
          "name" : "61928",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3077",
          "name" : "DSA-3077",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2014/dsa-3080",
          "name" : "DSA-3080",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70544",
          "name" : "70544",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2386-1",
          "name" : "USN-2386-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-1",
          "name" : "USN-2388-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2388-2",
          "name" : "USN-2388-2",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21688283",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10092",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10092",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3 and JRockit R28.3.3 allows remote attackers to affect integrity via unknown vectors related to Security."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.8.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.3:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_67:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6562",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "name" : "http://linux.oracle.com/errata/ELSA-2014-1636",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2014-1636.html",
          "name" : "RHSA-2014:1636",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/60416",
          "name" : "60416",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61609",
          "name" : "61609",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://secunia.com/advisories/61928",
          "name" : "61928",
          "refsource" : "SECUNIA",
          "tags" : [ ]
        }, {
          "url" : "http://security.gentoo.org/glsa/glsa-201502-12.xml",
          "name" : "GLSA-201502-12",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2014-1972960.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/70523",
          "name" : "70523",
          "refsource" : "BID",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u20 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update20:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_20:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2014-10-15T22:55Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6585",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00001.html",
          "name" : "openSUSE-SU-2015:0190",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00018.html",
          "name" : "SUSE-SU-2015:0503",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142496355704097&w=2",
          "name" : "SSRT101951",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0068.html",
          "name" : "RHSA-2015:0068",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0079.html",
          "name" : "RHSA-2015:0079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0085.html",
          "name" : "RHSA-2015:0085",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0086.html",
          "name" : "RHSA-2015:0086",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0136.html",
          "name" : "RHSA-2015:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3144",
          "name" : "DSA-3144",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3147",
          "name" : "DSA-3147",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3323",
          "name" : "DSA-3323",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72173",
          "name" : "72173",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2486-1",
          "name" : "USN-2486-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2487-1",
          "name" : "USN-2487-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "name" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality via unknown vectors related to 2D, a different vulnerability than CVE-2014-6591."
        }, {
          "lang" : "en",
          "value" : "per: \"http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html\"\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T15:28Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6587",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00001.html",
          "name" : "openSUSE-SU-2015:0190",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00018.html",
          "name" : "SUSE-SU-2015:0503",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142496355704097&w=2",
          "name" : "SSRT101951",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0068.html",
          "name" : "RHSA-2015:0068",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0079.html",
          "name" : "RHSA-2015:0079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0085.html",
          "name" : "RHSA-2015:0085",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0086.html",
          "name" : "RHSA-2015:0086",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3144",
          "name" : "DSA-3144",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3147",
          "name" : "DSA-3147",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72168",
          "name" : "72168",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2486-1",
          "name" : "USN-2486-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2487-1",
          "name" : "USN-2487-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "name" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Libraries."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:S/C:P/I:P/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.1,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T15:28Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6591",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00001.html",
          "name" : "openSUSE-SU-2015:0190",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00018.html",
          "name" : "SUSE-SU-2015:0503",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142496355704097&w=2",
          "name" : "SSRT101951",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0068.html",
          "name" : "RHSA-2015:0068",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0079.html",
          "name" : "RHSA-2015:0079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0085.html",
          "name" : "RHSA-2015:0085",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0086.html",
          "name" : "RHSA-2015:0086",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0136.html",
          "name" : "RHSA-2015:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3144",
          "name" : "DSA-3144",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3147",
          "name" : "DSA-3147",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72175",
          "name" : "72175",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2486-1",
          "name" : "USN-2486-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2487-1",
          "name" : "USN-2487-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "name" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in the Java SE component in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality via unknown vectors related to 2D, a different vulnerability than CVE-2014-6585."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T15:28Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6593",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.3.4",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00001.html",
          "name" : "openSUSE-SU-2015:0190",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00018.html",
          "name" : "SUSE-SU-2015:0503",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142496355704097&w=2",
          "name" : "SSRT101951",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://packetstormsecurity.com/files/134251/Java-Secure-Socket-Extension-JSSE-SKIP-TLS.html",
          "name" : "http://packetstormsecurity.com/files/134251/Java-Secure-Socket-Extension-JSSE-SKIP-TLS.html",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0068.html",
          "name" : "RHSA-2015:0068",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0079.html",
          "name" : "RHSA-2015:0079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0085.html",
          "name" : "RHSA-2015:0085",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0086.html",
          "name" : "RHSA-2015:0086",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0136.html",
          "name" : "RHSA-2015:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3144",
          "name" : "DSA-3144",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3147",
          "name" : "DSA-3147",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72169",
          "name" : "72169",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2486-1",
          "name" : "USN-2486-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2487-1",
          "name" : "USN-2487-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10104",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10104",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www.exploit-db.com/exploits/38641/",
          "name" : "38641",
          "refsource" : "EXPLOIT-DB",
          "tags" : [ ]
        }, {
          "url" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "name" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit 27.8.4 and 28.3.4 allows remote attackers to affect confidentiality and integrity via vectors related to JSSE."
        }, {
          "lang" : "en",
          "value" : "Per: \"http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html\"\n\nApplies to client and server deployment of JSSE."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.8.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.4:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update6:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_6:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T15:28Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-6601",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "novell",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "suse_linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00001.html",
          "name" : "openSUSE-SU-2015:0190",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00018.html",
          "name" : "SUSE-SU-2015:0503",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142496355704097&w=2",
          "name" : "SSRT101951",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0068.html",
          "name" : "RHSA-2015:0068",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0079.html",
          "name" : "RHSA-2015:0079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0085.html",
          "name" : "RHSA-2015:0085",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0086.html",
          "name" : "RHSA-2015:0086",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3144",
          "name" : "DSA-3144",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3147",
          "name" : "DSA-3147",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72132",
          "name" : "72132",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2486-1",
          "name" : "USN-2486-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2487-1",
          "name" : "USN-2487-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot."
        }, {
          "lang" : "en",
          "value" : "Per:http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html\n\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_desktop:11.0:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_server:12.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T18:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2014-9390",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "apple",
            "product" : {
              "product_data" : [ {
                "product_name" : "xcode",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.1.1",
                    "version_affected" : "<="
                  }, {
                    "version_value" : "6.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "eclipse",
            "product" : {
              "product_data" : [ {
                "product_name" : "egit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jgit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "git-scm",
            "product" : {
              "product_data" : [ {
                "product_name" : "git",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "0.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.10.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.13.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.14.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.15.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.16.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.17.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.18.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.19.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.20.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.21.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.7a",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.7b",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.7c",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.7d",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.8a",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.8b",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.8c",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.8d",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.8e",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.8f",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.8g",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9a",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9b",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9c",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9d",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9e",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9f",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9g",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9h",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9i",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9j",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9k",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9l",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9m",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99.9n",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.0a",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.0b",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.3.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.3.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.4.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.4.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.5.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.5.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.3.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.7.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.8.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.8.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.9.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.9.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.9.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.9.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.9.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.10.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.10.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.10.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.10.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.11.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.11.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.11.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.11.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.11.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.11.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.11.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.12.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.12.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.12.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.12.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "libgit2",
            "product" : {
              "product_data" : [ {
                "product_name" : "libgit2",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "mercurial",
            "product" : {
              "product_data" : [ {
                "product_name" : "mercurial",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-20"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://article.gmane.org/gmane.linux.kernel/1853266",
          "name" : "http://article.gmane.org/gmane.linux.kernel/1853266",
          "refsource" : "MISC",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://git-blame.blogspot.com/2014/12/git-1856-195-205-214-and-221-and.html",
          "name" : "http://git-blame.blogspot.com/2014/12/git-1856-195-205-214-and-221-and.html",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://mercurial.selenic.com/wiki/WhatsNew",
          "name" : "http://mercurial.selenic.com/wiki/WhatsNew",
          "refsource" : "MISC",
          "tags" : [ "Release Notes", "Third Party Advisory" ]
        }, {
          "url" : "http://securitytracker.com/id?1031404",
          "name" : "http://securitytracker.com/id?1031404",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://support.apple.com/kb/HT204147",
          "name" : "http://support.apple.com/kb/HT204147",
          "refsource" : "MISC",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://github.com/blog/1938-git-client-vulnerability-announced",
          "name" : "https://github.com/blog/1938-git-client-vulnerability-announced",
          "refsource" : "MISC",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://github.com/libgit2/libgit2/commit/928429c5c96a701bcbcafacb2421a82602b36915",
          "name" : "https://github.com/libgit2/libgit2/commit/928429c5c96a701bcbcafacb2421a82602b36915",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://libgit2.org/security/",
          "name" : "https://libgit2.org/security/",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://news.ycombinator.com/item?id=8769667",
          "name" : "https://news.ycombinator.com/item?id=8769667",
          "refsource" : "MISC",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Git before 1.8.5.6, 1.9.x before 1.9.5, 2.0.x before 2.0.5, 2.1.x before 2.1.4, and 2.2.x before 2.2.1 on Windows and OS X; Mercurial before 3.2.3 on Windows and OS X; Apple Xcode before 6.2 beta 3; mine all versions before 08-12-2014; libgit2 all versions up to 0.21.2; Egit all versions before 08-12-2014; and JGit all versions before 08-12-2014 allow remote Git servers to execute arbitrary commands via a tree containing a crafted .git/config file with (1) an ignorable Unicode codepoint, (2) a git~1/config representation, or (3) mixed case that is improperly handled on a case-insensitive filesystem."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:git-scm:git:*:*:*:*:*:*:*:*",
            "versionEndExcluding" : "1.8.5.6"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:git-scm:git:*:*:*:*:*:*:*:*",
            "versionStartIncluding" : "1.9.0",
            "versionEndExcluding" : "1.9.5"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:git-scm:git:*:*:*:*:*:*:*:*",
            "versionStartIncluding" : "2.0.0",
            "versionEndExcluding" : "2.0.5"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:git-scm:git:*:*:*:*:*:*:*:*",
            "versionStartIncluding" : "2.1.0",
            "versionEndExcluding" : "2.1.4"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:git-scm:git:*:*:*:*:*:*:*:*",
            "versionStartIncluding" : "2.2.0",
            "versionEndExcluding" : "2.2.1"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:apple:mac_os_x:-:*:*:*:*:*:*:*"
          }, {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:mercurial:mercurial:*:*:*:*:*:*:*:*",
            "versionEndExcluding" : "3.2.3"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:apple:mac_os_x:-:*:*:*:*:*:*:*"
          }, {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:apple:xcode:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "6.1.1"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:apple:xcode:6.2:-:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:apple:xcode:6.2:beta_2:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:eclipse:egit:-:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:eclipse:jgit:-:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:libgit2:libgit2:-:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-02-12T02:15Z",
    "lastModifiedDate" : "2020-09-09T18:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0383",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.3.4",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "fedoraproject",
            "product" : {
              "product_data" : [ {
                "product_name" : "fedora",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "22",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "novell",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "suse_linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-May/158088.html",
          "name" : "FEDORA-2015-8264",
          "refsource" : "FEDORA",
          "tags" : [ ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-May/158791.html",
          "name" : "FEDORA-2015-8226",
          "refsource" : "FEDORA",
          "tags" : [ ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-May/158810.html",
          "name" : "FEDORA-2015-8251",
          "refsource" : "FEDORA",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00001.html",
          "name" : "openSUSE-SU-2015:0190",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00018.html",
          "name" : "SUSE-SU-2015:0503",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142496355704097&w=2",
          "name" : "SSRT101951",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0068.html",
          "name" : "RHSA-2015:0068",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0079.html",
          "name" : "RHSA-2015:0079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0085.html",
          "name" : "RHSA-2015:0085",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0086.html",
          "name" : "RHSA-2015:0086",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3144",
          "name" : "DSA-3144",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3147",
          "name" : "DSA-3147",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72155",
          "name" : "72155",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2486-1",
          "name" : "USN-2486-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2487-1",
          "name" : "USN-2487-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/100148",
          "name" : "oracle-cpujan2015-cve20150383(100148)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit R27.8.4 and R28.3.4 allows local users to affect integrity and availability via unknown vectors related to Hotspot."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html\n\nApplies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:20:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:21:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_desktop:11.0:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_server:12.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update6:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_6:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.8.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.4:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:N/I:P/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 5.4
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.4,
        "impactScore" : 7.8,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T18:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0395",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "novell",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00001.html",
          "name" : "openSUSE-SU-2015:0190",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00018.html",
          "name" : "SUSE-SU-2015:0503",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142496355704097&w=2",
          "name" : "SSRT101951",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0068.html",
          "name" : "RHSA-2015:0068",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0079.html",
          "name" : "RHSA-2015:0079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0085.html",
          "name" : "RHSA-2015:0085",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0086.html",
          "name" : "RHSA-2015:0086",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0136.html",
          "name" : "RHSA-2015:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3144",
          "name" : "DSA-3144",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3147",
          "name" : "DSA-3147",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72142",
          "name" : "72142",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2486-1",
          "name" : "USN-2486-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2487-1",
          "name" : "USN-2487-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/100143",
          "name" : "oracle-cpujan2015-cve20150395(100143)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "name" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_server:11.0:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_server:12.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T18:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0400",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "novell",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "suse_linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00001.html",
          "name" : "openSUSE-SU-2015:0190",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00018.html",
          "name" : "SUSE-SU-2015:0503",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142496355704097&w=2",
          "name" : "SSRT101951",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72159",
          "name" : "72159",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2486-1",
          "name" : "USN-2486-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2487-1",
          "name" : "USN-2487-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/100149",
          "name" : "oracle-cpujan2015-cve20150400(100149)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "name" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality via unknown vectors related to Libraries."
        }, {
          "lang" : "en",
          "value" : "As per Oracle:\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\n\n\nhttp://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_desktop:12.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_server:12.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T18:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0403",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "novell",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142496355704097&w=2",
          "name" : "SSRT101951",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0079.html",
          "name" : "RHSA-2015:0079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0086.html",
          "name" : "RHSA-2015:0086",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72148",
          "name" : "72148",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/100145",
          "name" : "oracle-cpujan2015-cve20150403(100145)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "name" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "As per Oracle:\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\n\n\nhttp://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_desktop:11.0:sp3:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 6.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.4,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T18:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0406",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "novell",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142496355704097&w=2",
          "name" : "SSRT101951",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0079.html",
          "name" : "RHSA-2015:0079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0086.html",
          "name" : "RHSA-2015:0086",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72154",
          "name" : "72154",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/100147",
          "name" : "oracle-cpujan2015-cve20150406(100147)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "name" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality and availability via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "As per http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html:\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_desktop:11.0:sp3:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T18:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0407",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "fedoraproject",
            "product" : {
              "product_data" : [ {
                "product_name" : "fedora",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "20",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00001.html",
          "name" : "openSUSE-SU-2015:0190",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00018.html",
          "name" : "SUSE-SU-2015:0503",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142496355704097&w=2",
          "name" : "SSRT101951",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0068.html",
          "name" : "RHSA-2015:0068",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0079.html",
          "name" : "RHSA-2015:0079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0085.html",
          "name" : "RHSA-2015:0085",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0086.html",
          "name" : "RHSA-2015:0086",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0136.html",
          "name" : "RHSA-2015:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3144",
          "name" : "DSA-3144",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3147",
          "name" : "DSA-3147",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72162",
          "name" : "72162",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2486-1",
          "name" : "USN-2486-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2487-1",
          "name" : "USN-2487-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/100150",
          "name" : "oracle-cpujan2015-cve20150407(100150)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "name" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality via unknown vectors related to Swing."
        }, {
          "lang" : "en",
          "value" : "As per Oracle:\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:20:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T18:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0408",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "novell",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "suse_linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00001.html",
          "name" : "openSUSE-SU-2015:0190",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00018.html",
          "name" : "SUSE-SU-2015:0503",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142496355704097&w=2",
          "name" : "SSRT101951",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0068.html",
          "name" : "RHSA-2015:0068",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0079.html",
          "name" : "RHSA-2015:0079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0085.html",
          "name" : "RHSA-2015:0085",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0086.html",
          "name" : "RHSA-2015:0086",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0136.html",
          "name" : "RHSA-2015:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3144",
          "name" : "DSA-3144",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3147",
          "name" : "DSA-3147",
          "refsource" : "DEBIAN",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72140",
          "name" : "72140",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2486-1",
          "name" : "USN-2486-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2487-1",
          "name" : "USN-2487-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/100142",
          "name" : "oracle-cpujan2015-cve20150408(100142)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "name" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI."
        }, {
          "lang" : "en",
          "value" : "As per Oracle:\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.\n\n\nhttp://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html\n\n"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_desktop:11.0:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_server:12.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T18:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0410",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r27.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r28.3.4",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "novell",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "suse_linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00001.html",
          "name" : "openSUSE-SU-2015:0190",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00018.html",
          "name" : "SUSE-SU-2015:0503",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142496355704097&w=2",
          "name" : "SSRT101951",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0068.html",
          "name" : "RHSA-2015:0068",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0079.html",
          "name" : "RHSA-2015:0079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0085.html",
          "name" : "RHSA-2015:0085",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0086.html",
          "name" : "RHSA-2015:0086",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0136.html",
          "name" : "RHSA-2015:0136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3144",
          "name" : "DSA-3144",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3147",
          "name" : "DSA-3147",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72165",
          "name" : "72165",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2486-1",
          "name" : "USN-2486-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2487-1",
          "name" : "USN-2487-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/100151",
          "name" : "oracle-cpujan2015-cve20150410(100151)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10104",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10104",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://source.android.com/security/bulletin/2016-11-01.html",
          "name" : "https://source.android.com/security/bulletin/2016-11-01.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "name" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in the Java SE, Java SE Embedded, JRockit component in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit R27.8.4 and R28.3.4 allows remote attackers to affect availability via unknown vectors related to Security."
        }, {
          "lang" : "en",
          "value" : "Per: http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html\n\nApplies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update6:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_71:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_6:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r27.8.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.4:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_desktop:11.0:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_server:12.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T18:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0412",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "novell",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "suse_linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00001.html",
          "name" : "openSUSE-SU-2015:0190",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00018.html",
          "name" : "SUSE-SU-2015:0503",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142496355704097&w=2",
          "name" : "SSRT101951",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0068.html",
          "name" : "RHSA-2015:0068",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0079.html",
          "name" : "RHSA-2015:0079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0085.html",
          "name" : "RHSA-2015:0085",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0086.html",
          "name" : "RHSA-2015:0086",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0264.html",
          "name" : "RHSA-2015:0264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3144",
          "name" : "DSA-3144",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3147",
          "name" : "DSA-3147",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72136",
          "name" : "72136",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2486-1",
          "name" : "USN-2486-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2487-1",
          "name" : "USN-2487-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/100140",
          "name" : "oracle-cpujan2015-cve20150412(100140)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "name" : "https://www-304.ibm.com/support/docview.wss?uid=swg21695474",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAX-WS."
        }, {
          "lang" : "en",
          "value" : "As per Oracle:\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_desktop:11.0:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_server:12.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T19:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0413",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "suse",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04583581",
          "name" : "HPSBUX03281",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=142607790919348&w=2",
          "name" : "SSRT101968",
          "refsource" : "HP",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0079.html",
          "name" : "RHSA-2015:0079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72176",
          "name" : "72176",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2487-1",
          "name" : "USN-2487-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "name" : "http://www.vmware.com/security/advisories/VMSA-2015-0003.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/100156",
          "name" : "oracle-cpujan2015-cve20150413(100156)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u72 and 8u25 allows local users to affect integrity via unknown vectors related to Serviceability."
        }, {
          "lang" : "en",
          "value" : "As per http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html:\n\nApplies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_72:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:suse_linux_enterprise_server:11.0:sp3:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 1.9
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.4,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T19:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0421",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "novell",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72150",
          "name" : "72150",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/100146",
          "name" : "oracle-cpujan2015-cve20150421(100146)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201507-14",
          "name" : "GLSA-201507-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u25 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to the installation process."
        }, {
          "lang" : "en",
          "value" : "As per Oracle:\n\nApplies to installation process on client deployment of Java."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_desktop:11.0:sp3:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 6.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.4,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T19:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0437",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "novell",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00024.html",
          "name" : "SUSE-SU-2015:0336",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0080.html",
          "name" : "RHSA-2015:0080",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/72146",
          "name" : "72146",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1031580",
          "name" : "1031580",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/100144",
          "name" : "oracle-cpujan2015-cve20150437(100144)",
          "refsource" : "XF",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update25:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_25:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_desktop:11.0:sp3:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-01-21T19:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0458",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "novell",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html",
          "name" : "openSUSE-SU-2015:0773",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00018.html",
          "name" : "openSUSE-SU-2015:0774",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00002.html",
          "name" : "SUSE-SU-2015:0833",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00015.html",
          "name" : "SUSE-SU-2015:1086",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00022.html",
          "name" : "SUSE-SU-2015:1138",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00031.html",
          "name" : "SUSE-SU-2015:1161",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0854.html",
          "name" : "RHSA-2015:0854",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0857.html",
          "name" : "RHSA-2015:0857",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0858.html",
          "name" : "RHSA-2015:0858",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1006.html",
          "name" : "RHSA-2015:1006",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1007.html",
          "name" : "RHSA-2015:1007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1020.html",
          "name" : "RHSA-2015:1020",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1091.html",
          "name" : "RHSA-2015:1091",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74141",
          "name" : "74141",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032120",
          "name" : "1032120",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in in Oracle Java SE 6u91, 7u76, and 8u40 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. (http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html)"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update40:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_40:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_desktop:11.0:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.6
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 4.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-04-16T16:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0459",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.76",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "novell",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html",
          "name" : "openSUSE-SU-2015:0773",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00018.html",
          "name" : "openSUSE-SU-2015:0774",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00002.html",
          "name" : "SUSE-SU-2015:0833",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00014.html",
          "name" : "SUSE-SU-2015:1085",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00015.html",
          "name" : "SUSE-SU-2015:1086",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00022.html",
          "name" : "SUSE-SU-2015:1138",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00031.html",
          "name" : "SUSE-SU-2015:1161",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0854.html",
          "name" : "RHSA-2015:0854",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0857.html",
          "name" : "RHSA-2015:0857",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0858.html",
          "name" : "RHSA-2015:0858",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1006.html",
          "name" : "RHSA-2015:1006",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1007.html",
          "name" : "RHSA-2015:1007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1020.html",
          "name" : "RHSA-2015:1020",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1021.html",
          "name" : "RHSA-2015:1021",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1091.html",
          "name" : "RHSA-2015:1091",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74083",
          "name" : "74083",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032120",
          "name" : "1032120",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40, and JavaFX 2.2.76, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D, a different vulnerability than CVE-2015-0491."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. (http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html)"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update40:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_40:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.76:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:novell:suse_linux_enterprise_desktop:11.0:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-04-16T16:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0460",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://advisories.mageia.org/MGASA-2015-0158.html",
          "name" : "http://advisories.mageia.org/MGASA-2015-0158.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html",
          "name" : "openSUSE-SU-2015:0773",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00018.html",
          "name" : "openSUSE-SU-2015:0774",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00002.html",
          "name" : "SUSE-SU-2015:0833",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0806.html",
          "name" : "RHSA-2015:0806",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0807.html",
          "name" : "RHSA-2015:0807",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0808.html",
          "name" : "RHSA-2015:0808",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0809.html",
          "name" : "RHSA-2015:0809",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0854.html",
          "name" : "RHSA-2015:0854",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0857.html",
          "name" : "RHSA-2015:0857",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0858.html",
          "name" : "RHSA-2015:0858",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3234",
          "name" : "DSA-3234",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3235",
          "name" : "DSA-3235",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2015:212",
          "name" : "MDVSA-2015:212",
          "refsource" : "MANDRIVA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74097",
          "name" : "74097",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032120",
          "name" : "1032120",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2573-1",
          "name" : "USN-2573-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2574-1",
          "name" : "USN-2574-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. (http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html)"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update40:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_40:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-04-16T16:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0469",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://advisories.mageia.org/MGASA-2015-0158.html",
          "name" : "http://advisories.mageia.org/MGASA-2015-0158.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html",
          "name" : "openSUSE-SU-2015:0773",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00018.html",
          "name" : "openSUSE-SU-2015:0774",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00002.html",
          "name" : "SUSE-SU-2015:0833",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00014.html",
          "name" : "SUSE-SU-2015:1085",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00015.html",
          "name" : "SUSE-SU-2015:1086",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00022.html",
          "name" : "SUSE-SU-2015:1138",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00031.html",
          "name" : "SUSE-SU-2015:1161",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0806.html",
          "name" : "RHSA-2015:0806",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0807.html",
          "name" : "RHSA-2015:0807",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0808.html",
          "name" : "RHSA-2015:0808",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0809.html",
          "name" : "RHSA-2015:0809",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0854.html",
          "name" : "RHSA-2015:0854",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0857.html",
          "name" : "RHSA-2015:0857",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0858.html",
          "name" : "RHSA-2015:0858",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1006.html",
          "name" : "RHSA-2015:1006",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1007.html",
          "name" : "RHSA-2015:1007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1020.html",
          "name" : "RHSA-2015:1020",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1021.html",
          "name" : "RHSA-2015:1021",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1091.html",
          "name" : "RHSA-2015:1091",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3234",
          "name" : "DSA-3234",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3235",
          "name" : "DSA-3235",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2015:212",
          "name" : "MDVSA-2015:212",
          "refsource" : "MANDRIVA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74072",
          "name" : "74072",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032120",
          "name" : "1032120",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2573-1",
          "name" : "USN-2573-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2574-1",
          "name" : "USN-2574-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. (http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html)"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update40:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_40:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-04-16T16:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0470",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html",
          "name" : "openSUSE-SU-2015:0773",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0809.html",
          "name" : "RHSA-2015:0809",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0854.html",
          "name" : "RHSA-2015:0854",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3234",
          "name" : "DSA-3234",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3235",
          "name" : "DSA-3235",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74149",
          "name" : "74149",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032120",
          "name" : "1032120",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u40 allows remote attackers to affect integrity via unknown vectors related to Hotspot."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. (http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html)"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update40:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_40:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-04-16T16:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0477",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://advisories.mageia.org/MGASA-2015-0158.html",
          "name" : "http://advisories.mageia.org/MGASA-2015-0158.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html",
          "name" : "openSUSE-SU-2015:0773",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00018.html",
          "name" : "openSUSE-SU-2015:0774",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00002.html",
          "name" : "SUSE-SU-2015:0833",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00014.html",
          "name" : "SUSE-SU-2015:1085",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00015.html",
          "name" : "SUSE-SU-2015:1086",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00022.html",
          "name" : "SUSE-SU-2015:1138",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00031.html",
          "name" : "SUSE-SU-2015:1161",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0806.html",
          "name" : "RHSA-2015:0806",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0807.html",
          "name" : "RHSA-2015:0807",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0808.html",
          "name" : "RHSA-2015:0808",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0809.html",
          "name" : "RHSA-2015:0809",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0854.html",
          "name" : "RHSA-2015:0854",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0857.html",
          "name" : "RHSA-2015:0857",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0858.html",
          "name" : "RHSA-2015:0858",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1006.html",
          "name" : "RHSA-2015:1006",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1007.html",
          "name" : "RHSA-2015:1007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1020.html",
          "name" : "RHSA-2015:1020",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1021.html",
          "name" : "RHSA-2015:1021",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1091.html",
          "name" : "RHSA-2015:1091",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3234",
          "name" : "DSA-3234",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3235",
          "name" : "DSA-3235",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2015:212",
          "name" : "MDVSA-2015:212",
          "refsource" : "MANDRIVA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74119",
          "name" : "74119",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032120",
          "name" : "1032120",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2573-1",
          "name" : "USN-2573-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2574-1",
          "name" : "USN-2574-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows remote attackers to affect integrity via unknown vectors related to Beans."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. (http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html)"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update40:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_40:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-04-16T16:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0478",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.5",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://advisories.mageia.org/MGASA-2015-0158.html",
          "name" : "http://advisories.mageia.org/MGASA-2015-0158.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html",
          "name" : "openSUSE-SU-2015:0773",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00018.html",
          "name" : "openSUSE-SU-2015:0774",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00002.html",
          "name" : "SUSE-SU-2015:0833",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00014.html",
          "name" : "SUSE-SU-2015:1085",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00015.html",
          "name" : "SUSE-SU-2015:1086",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00022.html",
          "name" : "SUSE-SU-2015:1138",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00031.html",
          "name" : "SUSE-SU-2015:1161",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0806.html",
          "name" : "RHSA-2015:0806",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0807.html",
          "name" : "RHSA-2015:0807",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0808.html",
          "name" : "RHSA-2015:0808",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0809.html",
          "name" : "RHSA-2015:0809",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0854.html",
          "name" : "RHSA-2015:0854",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0857.html",
          "name" : "RHSA-2015:0857",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0858.html",
          "name" : "RHSA-2015:0858",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1006.html",
          "name" : "RHSA-2015:1006",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1007.html",
          "name" : "RHSA-2015:1007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1020.html",
          "name" : "RHSA-2015:1020",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1021.html",
          "name" : "RHSA-2015:1021",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1091.html",
          "name" : "RHSA-2015:1091",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3234",
          "name" : "DSA-3234",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3235",
          "name" : "DSA-3235",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2015:212",
          "name" : "MDVSA-2015:212",
          "refsource" : "MANDRIVA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74147",
          "name" : "74147",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032120",
          "name" : "1032120",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1035517",
          "name" : "1035517",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2573-1",
          "name" : "USN-2573-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2574-1",
          "name" : "USN-2574-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-304.ibm.com/support/docview.wss?uid=swg21903565",
          "name" : "http://www-304.ibm.com/support/docview.wss?uid=swg21903565",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-304.ibm.com/support/docview.wss?uid=swg21960194",
          "name" : "http://www-304.ibm.com/support/docview.wss?uid=swg21960194",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40, and JRockit R28.3.5, allows remote attackers to affect confidentiality via vectors related to JCE."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. (http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html)"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.5:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update40:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_40:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-04-16T16:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0480",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://advisories.mageia.org/MGASA-2015-0158.html",
          "name" : "http://advisories.mageia.org/MGASA-2015-0158.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html",
          "name" : "openSUSE-SU-2015:0773",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00018.html",
          "name" : "openSUSE-SU-2015:0774",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00002.html",
          "name" : "SUSE-SU-2015:0833",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00014.html",
          "name" : "SUSE-SU-2015:1085",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00015.html",
          "name" : "SUSE-SU-2015:1086",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00022.html",
          "name" : "SUSE-SU-2015:1138",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00031.html",
          "name" : "SUSE-SU-2015:1161",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0806.html",
          "name" : "RHSA-2015:0806",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0807.html",
          "name" : "RHSA-2015:0807",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0808.html",
          "name" : "RHSA-2015:0808",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0809.html",
          "name" : "RHSA-2015:0809",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0854.html",
          "name" : "RHSA-2015:0854",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0857.html",
          "name" : "RHSA-2015:0857",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0858.html",
          "name" : "RHSA-2015:0858",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1006.html",
          "name" : "RHSA-2015:1006",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1007.html",
          "name" : "RHSA-2015:1007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1020.html",
          "name" : "RHSA-2015:1020",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1021.html",
          "name" : "RHSA-2015:1021",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1091.html",
          "name" : "RHSA-2015:1091",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3234",
          "name" : "DSA-3234",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3235",
          "name" : "DSA-3235",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2015:212",
          "name" : "MDVSA-2015:212",
          "refsource" : "MANDRIVA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74104",
          "name" : "74104",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032120",
          "name" : "1032120",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2573-1",
          "name" : "USN-2573-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2574-1",
          "name" : "USN-2574-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows remote attackers to affect integrity and availability via unknown vectors related to Tools."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. (http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html)"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update40:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_40:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-04-16T16:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0484",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.76",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "suse",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html",
          "name" : "openSUSE-SU-2015:0773",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00018.html",
          "name" : "openSUSE-SU-2015:0774",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00002.html",
          "name" : "SUSE-SU-2015:0833",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0854.html",
          "name" : "RHSA-2015:0854",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0857.html",
          "name" : "RHSA-2015:0857",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74135",
          "name" : "74135",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032120",
          "name" : "1032120",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u76 and 8u40, and Java FX 2.2.76, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2015-0492."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. (http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html)"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update40:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_40:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.76:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp3:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-04-16T16:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0486",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html",
          "name" : "openSUSE-SU-2015:0773",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0854.html",
          "name" : "RHSA-2015:0854",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74145",
          "name" : "74145",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032120",
          "name" : "1032120",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u40 allows remote attackers to affect confidentiality via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. (http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html)"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update40:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_40:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-04-16T16:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0488",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.5",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://advisories.mageia.org/MGASA-2015-0158.html",
          "name" : "http://advisories.mageia.org/MGASA-2015-0158.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html",
          "name" : "openSUSE-SU-2015:0773",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00018.html",
          "name" : "openSUSE-SU-2015:0774",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00002.html",
          "name" : "SUSE-SU-2015:0833",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00014.html",
          "name" : "SUSE-SU-2015:1085",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00015.html",
          "name" : "SUSE-SU-2015:1086",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00022.html",
          "name" : "SUSE-SU-2015:1138",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00031.html",
          "name" : "SUSE-SU-2015:1161",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0806.html",
          "name" : "RHSA-2015:0806",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0807.html",
          "name" : "RHSA-2015:0807",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0808.html",
          "name" : "RHSA-2015:0808",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0809.html",
          "name" : "RHSA-2015:0809",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0854.html",
          "name" : "RHSA-2015:0854",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0857.html",
          "name" : "RHSA-2015:0857",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0858.html",
          "name" : "RHSA-2015:0858",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1006.html",
          "name" : "RHSA-2015:1006",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1007.html",
          "name" : "RHSA-2015:1007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1020.html",
          "name" : "RHSA-2015:1020",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1021.html",
          "name" : "RHSA-2015:1021",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1091.html",
          "name" : "RHSA-2015:1091",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3234",
          "name" : "DSA-3234",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3235",
          "name" : "DSA-3235",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.mandriva.com/security/advisories?name=MDVSA-2015:212",
          "name" : "MDVSA-2015:212",
          "refsource" : "MANDRIVA",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74111",
          "name" : "74111",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032120",
          "name" : "1032120",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2573-1",
          "name" : "USN-2573-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2574-1",
          "name" : "USN-2574-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-304.ibm.com/support/docview.wss?uid=swg21903565",
          "name" : "http://www-304.ibm.com/support/docview.wss?uid=swg21903565",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-304.ibm.com/support/docview.wss?uid=swg21960194",
          "name" : "http://www-304.ibm.com/support/docview.wss?uid=swg21960194",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www-304.ibm.com/support/docview.wss?uid=swg21960769",
          "name" : "http://www-304.ibm.com/support/docview.wss?uid=swg21960769",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40, and JRockit R28.3.5, allows remote attackers to affect availability via vectors related to JSSE."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client and server deployment of JSSE. (http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html)"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.5:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update40:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_40:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-04-16T16:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0491",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.76",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "suse",
            "product" : {
              "product_data" : [ {
                "product_name" : "suse_linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html",
          "name" : "openSUSE-SU-2015:0773",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00018.html",
          "name" : "openSUSE-SU-2015:0774",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00002.html",
          "name" : "SUSE-SU-2015:0833",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00014.html",
          "name" : "SUSE-SU-2015:1085",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00015.html",
          "name" : "SUSE-SU-2015:1086",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00022.html",
          "name" : "SUSE-SU-2015:1138",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00031.html",
          "name" : "SUSE-SU-2015:1161",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0854.html",
          "name" : "RHSA-2015:0854",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0857.html",
          "name" : "RHSA-2015:0857",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0858.html",
          "name" : "RHSA-2015:0858",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1006.html",
          "name" : "RHSA-2015:1006",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1007.html",
          "name" : "RHSA-2015:1007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1020.html",
          "name" : "RHSA-2015:1020",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1021.html",
          "name" : "RHSA-2015:1021",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1091.html",
          "name" : "RHSA-2015:1091",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74094",
          "name" : "74094",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032120",
          "name" : "1032120",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21883640",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40, and Java FX 2.2.76, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D, a different vulnerability than CVE-2015-0459."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. (http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html)"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update40:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_40:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.76:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:suse_linux_enterprise_desktop:11.0:sp3:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-04-16T16:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-0492",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.76",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "suse",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html",
          "name" : "openSUSE-SU-2015:0773",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00018.html",
          "name" : "openSUSE-SU-2015:0774",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00002.html",
          "name" : "SUSE-SU-2015:0833",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0854.html",
          "name" : "RHSA-2015:0854",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-0857.html",
          "name" : "RHSA-2015:0857",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74129",
          "name" : "74129",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032120",
          "name" : "1032120",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u76 and 8u40, and JavaFX 2.2.76, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2015-0484."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. (http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html)"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp3:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.76:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update40:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.5.0:update_81:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_76:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_40:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-04-16T16:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-1239",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-415"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://bugs.chromium.org/p/chromium/issues/detail?id=430891",
          "name" : "https://bugs.chromium.org/p/chromium/issues/detail?id=430891",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://bugs.chromium.org/p/chromium/issues/detail?id=457493",
          "name" : "https://bugs.chromium.org/p/chromium/issues/detail?id=457493",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/07/msg00025.html",
          "name" : "[debian-lts-announce] 20180719 [SECURITY] [DLA 1433-1] openjpeg2 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Double free vulnerability in the j2k_read_ppm_v3 function in OpenJPEG before r2997, as used in PDFium in Google Chrome, allows remote attackers to cause a denial of service (process crash) via a crafted PDF."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:a:google:chrome:-:*:*:*:*:*:*:*"
          }, {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:a:google:pdfium:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-10-18T17:29Z",
    "lastModifiedDate" : "2020-09-09T19:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-1779",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.1",
                    "version_affected" : "<="
                  }, {
                    "version_value" : "2.3.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "virtualization",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_dekstop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "fedoraproject",
            "product" : {
              "product_data" : [ {
                "product_name" : "fedora",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "22",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-400"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-April/154656.html",
          "name" : "FEDORA-2015-5482",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-April/155196.html",
          "name" : "FEDORA-2015-5541",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00033.html",
          "name" : "SUSE-SU-2015:0870",
          "refsource" : "SUSE",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00042.html",
          "name" : "SUSE-SU-2015:0896",
          "refsource" : "SUSE",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1931.html",
          "name" : "RHSA-2015:1931",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1943.html",
          "name" : "RHSA-2015:1943",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3259",
          "name" : "DSA-3259",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/03/24/9",
          "name" : "[oss-security] 20150324 CVE-2015-1779 qemu: vnc: insufficient resource limiting in VNC websockets decoder",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/04/09/6",
          "name" : "[oss-security] 20150409 Re: CVE-2015-1779 qemu: vnc: insufficient resource limiting in VNC websockets decoder",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/73303",
          "name" : "73303",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033975",
          "name" : "1033975",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2608-1",
          "name" : "USN-2608-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2015-03/msg04894.html",
          "name" : "[Qemu-devel] 20150323 [PATCH 0/2] CVE-2015-1779: fix denial of service in VNC websockets",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2015-03/msg04895.html",
          "name" : "[Qemu-devel] 20150323 [PATCH 2/2] CVE-2015-1779: limit size of HTTP headers from websockets clients",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2015-03/msg04896.html",
          "name" : "[Qemu-devel] 20150323 [PATCH 1/2] CVE-2015-1779: incrementally decode websocket frames",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201602-01",
          "name" : "GLSA-201602-01",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The VNC websocket frame decoder in QEMU allows remote attackers to cause a denial of service (memory and CPU consumption) via a large (1) websocket payload or (2) HTTP headers section."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.2.1"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.3.0:rc0:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.3.0:rc1:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.04:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:21:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_dekstop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:redhat:virtualization:3.0:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:7:-:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.8
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false
      }
    },
    "publishedDate" : "2016-01-12T19:59Z",
    "lastModifiedDate" : "2020-09-09T15:13Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2528",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "microsoft",
            "product" : {
              "product_data" : [ {
                "product_name" : "windows_10",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "windows_7",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "windows_8",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "windows_8.1",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "windows_rt",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "windows_rt_8.1",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "windows_server_2008",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r2",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "windows_server_2012",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "r2",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "windows_vista",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-264"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://packetstormsecurity.com/files/159109/Microsoft-Windows-CloudExperienceHostBroker-Privilege-Escalation.html",
          "name" : "http://packetstormsecurity.com/files/159109/Microsoft-Windows-CloudExperienceHostBroker-Privilege-Escalation.html",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033494",
          "name" : "1033494",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-102",
          "name" : "MS15-102",
          "refsource" : "MS",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "https://www.exploit-db.com/exploits/38201/",
          "name" : "38201",
          "refsource" : "EXPLOIT-DB",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 do not properly constrain impersonation levels, which allows local users to gain privileges via a crafted application, aka \"Windows Task Management Elevation of Privilege Vulnerability,\" a different vulnerability than CVE-2015-2524."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_8:-:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_8.1:-:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_rt:-:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_rt_8.1:-:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:itanium:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_vista:-:sp2:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-09-09T00:59Z",
    "lastModifiedDate" : "2020-09-08T21:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2590",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1228.html",
          "name" : "RHSA-2015:1228",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1229.html",
          "name" : "RHSA-2015:1229",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1230.html",
          "name" : "RHSA-2015:1230",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1526.html",
          "name" : "RHSA-2015:1526",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1544.html",
          "name" : "RHSA-2015:1544",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3339",
          "name" : "DSA-3339",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75818",
          "name" : "75818",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2696-1",
          "name" : "USN-2696-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2706-1",
          "name" : "USN-2706-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2015-4732."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. </a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T10:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2597",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75856",
          "name" : "75856",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u80 and 8u45 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Install."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to Mac OS X only.</a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T10:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2601",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.6",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727",
          "name" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1228.html",
          "name" : "RHSA-2015:1228",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1229.html",
          "name" : "RHSA-2015:1229",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1230.html",
          "name" : "RHSA-2015:1230",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1526.html",
          "name" : "RHSA-2015:1526",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1544.html",
          "name" : "RHSA-2015:1544",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3339",
          "name" : "DSA-3339",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75867",
          "name" : "75867",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1037732",
          "name" : "1037732",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2696-1",
          "name" : "USN-2696-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2706-1",
          "name" : "USN-2706-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10139",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10139",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, JRockit R28.3.6, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality via vectors related to JCE."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.</a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.6:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T10:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2613",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727",
          "name" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3339",
          "name" : "DSA-3339",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75871",
          "name" : "75871",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2696-1",
          "name" : "USN-2696-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2706-1",
          "name" : "USN-2706-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10139",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10139",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u80 and 8u45, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality via vectors related to JCE."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.</a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T10:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2619",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.80",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75881",
          "name" : "75881",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u80 and 8u45, JavaFX 2.2.80, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality via unknown vectors related to 2D."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. </a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.80:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T10:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2621",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1228.html",
          "name" : "RHSA-2015:1228",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1229.html",
          "name" : "RHSA-2015:1229",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1230.html",
          "name" : "RHSA-2015:1230",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1526.html",
          "name" : "RHSA-2015:1526",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1544.html",
          "name" : "RHSA-2015:1544",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3339",
          "name" : "DSA-3339",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75874",
          "name" : "75874",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2696-1",
          "name" : "USN-2696-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2706-1",
          "name" : "USN-2706-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Embedded 7u75 and 8u33, allows remote attackers to affect confidentiality via vectors related to JMX."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. </a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T10:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2625",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.6",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727",
          "name" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1228.html",
          "name" : "RHSA-2015:1228",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1229.html",
          "name" : "RHSA-2015:1229",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1230.html",
          "name" : "RHSA-2015:1230",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1526.html",
          "name" : "RHSA-2015:1526",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3339",
          "name" : "DSA-3339",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75895",
          "name" : "75895",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2696-1",
          "name" : "USN-2696-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2706-1",
          "name" : "USN-2706-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10139",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10139",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45; JRockit R28.3.6; and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality via vectors related to JSSE."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client and server deployment of JSSE.</a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.6:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T10:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2627",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75893",
          "name" : "75893",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45 allows remote attackers to affect confidentiality via unknown vectors related to installation."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to installation process on client deployment of Java.</a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T10:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2628",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1228.html",
          "name" : "RHSA-2015:1228",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1229.html",
          "name" : "RHSA-2015:1229",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1230.html",
          "name" : "RHSA-2015:1230",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1526.html",
          "name" : "RHSA-2015:1526",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3339",
          "name" : "DSA-3339",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75796",
          "name" : "75796",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2696-1",
          "name" : "USN-2696-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2706-1",
          "name" : "USN-2706-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T10:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2632",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1228.html",
          "name" : "RHSA-2015:1228",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1229.html",
          "name" : "RHSA-2015:1229",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1230.html",
          "name" : "RHSA-2015:1230",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1526.html",
          "name" : "RHSA-2015:1526",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1544.html",
          "name" : "RHSA-2015:1544",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3339",
          "name" : "DSA-3339",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75861",
          "name" : "75861",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2696-1",
          "name" : "USN-2696-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2706-1",
          "name" : "USN-2706-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2740-1",
          "name" : "USN-2740-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-58",
          "name" : "GLSA-201701-58",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45 allows remote attackers to affect confidentiality via unknown vectors related to 2D."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. </a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T10:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2637",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.80",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1544.html",
          "name" : "RHSA-2015:1544",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75883",
          "name" : "75883",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45; JavaFX 2.2.80; and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality via unknown vectors related to 2D."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. </a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.80:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T10:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2638",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.80",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1544.html",
          "name" : "RHSA-2015:1544",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75833",
          "name" : "75833",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45; JavaFX 2.2.80; and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. </a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.80:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T10:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2659",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727",
          "name" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1228.html",
          "name" : "RHSA-2015:1228",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75877",
          "name" : "75877",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u45 and Java SE Embedded 8u33 allows remote attackers to affect availability via unknown vectors related to Security."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service.</a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T11:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2664",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1544.html",
          "name" : "RHSA-2015:1544",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75857",
          "name" : "75857",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.</a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 6.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.4,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T11:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-2857",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "accellion",
            "product" : {
              "product_data" : [ {
                "product_name" : "file_transfer_appliance",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "9_11_200",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-77"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://packetstormsecurity.com/files/132665/Accellion-FTA-getStatus-verify_oauth_token-Command-Execution.html",
          "name" : "http://packetstormsecurity.com/files/132665/Accellion-FTA-getStatus-verify_oauth_token-Command-Execution.html",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.rapid7.com/db/modules/exploit/linux/http/accellion_fta_getstatus_oauth",
          "name" : "http://www.rapid7.com/db/modules/exploit/linux/http/accellion_fta_getstatus_oauth",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://community.rapid7.com/community/metasploit/blog/2015/07/10/r7-2015-08-accellion-file-transfer-appliance-vulnerabilities-cve-2015-2856-cve-2015-2857",
          "name" : "https://community.rapid7.com/community/metasploit/blog/2015/07/10/r7-2015-08-accellion-file-transfer-appliance-vulnerabilities-cve-2015-2856-cve-2015-2857",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://www.exploit-db.com/exploits/37597/",
          "name" : "37597",
          "refsource" : "EXPLOIT-DB",
          "tags" : [ "Exploit", "Third Party Advisory", "VDB Entry" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Accellion File Transfer Appliance before FTA_9_11_210 allows remote attackers to execute arbitrary code via shell metacharacters in the oauth_token parameter."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:accellion:file_transfer_appliance:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "9_11_200"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-22T15:29Z",
    "lastModifiedDate" : "2020-09-09T15:11Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-3209",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "juniper",
            "product" : {
              "product_data" : [ {
                "product_name" : "junos_space",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "15.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.3.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "openstack",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "virtualization",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "suse",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux_enterprise_debuginfo",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_software_development_kit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "fedoraproject",
            "product" : {
              "product_data" : [ {
                "product_name" : "fedora",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "22",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-787"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698",
          "name" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-June/160669.html",
          "name" : "FEDORA-2015-10001",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-June/160677.html",
          "name" : "FEDORA-2015-9978",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-June/160685.html",
          "name" : "FEDORA-2015-9965",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00004.html",
          "name" : "SUSE-SU-2015:1042",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00007.html",
          "name" : "SUSE-SU-2015:1045",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00027.html",
          "name" : "SUSE-SU-2015:1152",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00029.html",
          "name" : "SUSE-SU-2015:1156",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00030.html",
          "name" : "SUSE-SU-2015:1157",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00014.html",
          "name" : "SUSE-SU-2015:1206",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-08/msg00020.html",
          "name" : "SUSE-SU-2015:1426",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00015.html",
          "name" : "SUSE-SU-2015:1519",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00027.html",
          "name" : "SUSE-SU-2015:1643",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1087.html",
          "name" : "RHSA-2015:1087",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1088.html",
          "name" : "RHSA-2015:1088",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1089.html",
          "name" : "RHSA-2015:1089",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1189.html",
          "name" : "RHSA-2015:1189",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3284",
          "name" : "DSA-3284",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3285",
          "name" : "DSA-3285",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3286",
          "name" : "DSA-3286",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75123",
          "name" : "75123",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032545",
          "name" : "1032545",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2630-1",
          "name" : "USN-2630-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://xenbits.xen.org/xsa/advisory-135.html",
          "name" : "http://xenbits.xen.org/xsa/advisory-135.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://kb.juniper.net/JSA10783",
          "name" : "https://kb.juniper.net/JSA10783",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201510-02",
          "name" : "GLSA-201510-02",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201604-03",
          "name" : "GLSA-201604-03",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Heap-based buffer overflow in the PCNET controller in QEMU allows remote attackers to execute arbitrary code by sending a packet with TXSTATUS_STARTPACKET set and then a crafted packet with TXSTATUS_DEVICEOWNS set."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.3.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:juniper:junos_space:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "15.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.04:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:6.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:6.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:6.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:redhat:openstack:5.0:*:*:*:*:*:*:*"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:redhat:virtualization:3.0:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:20:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:21:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:suse:linux_enterprise_debuginfo:11:sp2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:11:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:12:-:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:10:sp4:*:*:ltss:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp1:*:*:ltss:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp2:*:*:ltss:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp3:*:*:*:-:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:12:-:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_software_development_kit:11:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_software_development_kit:12:-:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-06-15T15:59Z",
    "lastModifiedDate" : "2020-09-09T15:14Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4000",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "apple",
            "product" : {
              "product_data" : [ {
                "product_name" : "safari",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "iphone_os",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.3",
                    "version_affected" : "<="
                  } ]
                }
              }, {
                "product_name" : "mac_os_x",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10.10.3",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "google",
            "product" : {
              "product_data" : [ {
                "product_name" : "chrome",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "ibm",
            "product" : {
              "product_data" : [ {
                "product_name" : "content_manager",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.5",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "microsoft",
            "product" : {
              "product_data" : [ {
                "product_name" : "ie",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "mozilla",
            "product" : {
              "product_data" : [ {
                "product_name" : "firefox",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  }, {
                    "version_value" : "39.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "firefox_esr",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "31.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "38.1.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "network_security_services",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.19",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "seamonkey",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.35",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "thunderbird",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "31.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "38.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "firefox_os",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "openssl",
            "product" : {
              "product_data" : [ {
                "product_name" : "openssl",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1a",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1b",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1c",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1d",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1e",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1f",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1g",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1h",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1i",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1j",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1k",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1l",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.1m",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.2a",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opera",
            "product" : {
              "product_data" : [ {
                "product_name" : "opera_browser",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sparc-opl_service_processor",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1121",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "hp-ux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "b.11.31",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "suse",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_software_development_kit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "suse_linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-310"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://aix.software.ibm.com/aix/efixes/security/sendmail_advisory2.asc",
          "name" : "http://aix.software.ibm.com/aix/efixes/security/sendmail_advisory2.asc",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://fortiguard.com/advisory/2015-07-09-cve-2015-1793-openssl-alternative-chains-certificate-forgery",
          "name" : "http://fortiguard.com/advisory/2015-07-09-cve-2015-1793-openssl-alternative-chains-certificate-forgery",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2015-008.txt.asc",
          "name" : "NetBSD-SA2015-008",
          "refsource" : "NETBSD",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-c04876402",
          "name" : "http://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-c04876402",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-c04949778",
          "name" : "http://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-c04949778",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10681",
          "name" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10681",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727",
          "name" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.apple.com/archives/security-announce/2015/Jun/msg00001.html",
          "name" : "APPLE-SA-2015-06-30-1",
          "refsource" : "APPLE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html",
          "name" : "APPLE-SA-2015-06-30-2",
          "refsource" : "APPLE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-June/159314.html",
          "name" : "FEDORA-2015-9130",
          "refsource" : "FEDORA",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-June/159351.html",
          "name" : "FEDORA-2015-9048",
          "refsource" : "FEDORA",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-June/160117.html",
          "name" : "FEDORA-2015-9161",
          "refsource" : "FEDORA",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00023.html",
          "name" : "openSUSE-SU-2015:1139",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00024.html",
          "name" : "SUSE-SU-2015:1143",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00026.html",
          "name" : "SUSE-SU-2015:1150",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00001.html",
          "name" : "SUSE-SU-2015:1177",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00003.html",
          "name" : "SUSE-SU-2015:1181",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00004.html",
          "name" : "SUSE-SU-2015:1182",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00005.html",
          "name" : "SUSE-SU-2015:1183",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00006.html",
          "name" : "SUSE-SU-2015:1184",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00007.html",
          "name" : "SUSE-SU-2015:1185",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00025.html",
          "name" : "openSUSE-SU-2015:1229",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00031.html",
          "name" : "openSUSE-SU-2015:1266",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00033.html",
          "name" : "SUSE-SU-2015:1268",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00034.html",
          "name" : "SUSE-SU-2015:1269",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00037.html",
          "name" : "openSUSE-SU-2015:1277",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-08/msg00021.html",
          "name" : "SUSE-SU-2015:1449",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00017.html",
          "name" : "SUSE-SU-2015:1581",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00001.html",
          "name" : "SUSE-SU-2015:1663",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00031.html",
          "name" : "SUSE-SU-2016:0224",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00032.html",
          "name" : "openSUSE-SU-2016:0226",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00037.html",
          "name" : "openSUSE-SU-2016:0255",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00039.html",
          "name" : "openSUSE-SU-2016:0261",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00040.html",
          "name" : "SUSE-SU-2016:0262",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2015-07/msg00016.html",
          "name" : "openSUSE-SU-2015:1209",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2015-10/msg00011.html",
          "name" : "openSUSE-SU-2015:1684",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-02/msg00094.html",
          "name" : "openSUSE-SU-2016:0478",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-02/msg00097.html",
          "name" : "openSUSE-SU-2016:0483",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=143506486712441&w=2",
          "name" : "HPSBMU03356",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=143557934009303&w=2",
          "name" : "HPSBGN03351",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=143558092609708&w=2",
          "name" : "HPSBGN03362",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=143628304012255&w=2",
          "name" : "HPSBGN03361",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=143637549705650&w=2",
          "name" : "HPSBUX03363",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=143655800220052&w=2",
          "name" : "HPSBGN03373",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=143880121627664&w=2",
          "name" : "SSRT102180",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=144043644216842&w=2",
          "name" : "HPSBMU03345",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=144050121701297&w=2",
          "name" : "HPSBGN03404",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=144060576831314&w=2",
          "name" : "HPSBGN03399",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=144060606031437&w=2",
          "name" : "HPSBGN03405",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=144061542602287&w=2",
          "name" : "HPSBGN03411",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=144069189622016&w=2",
          "name" : "HPSBGN03402",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=144102017024820&w=2",
          "name" : "HPSBGN03407",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=144104533800819&w=2",
          "name" : "HPSBMU03401",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=144493176821532&w=2",
          "name" : "HPSBUX03512",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://marc.info/?l=bugtraq&m=145409266329539&w=2",
          "name" : "HPSBGN03533",
          "refsource" : "HP",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://openwall.com/lists/oss-security/2015/05/20/8",
          "name" : "[oss-security] 20150520 CVE-2015-4000 - TLS does not properly convey server's ciphersuite choice",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1072.html",
          "name" : "RHSA-2015:1072",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1185.html",
          "name" : "RHSA-2015:1185",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1197.html",
          "name" : "RHSA-2015:1197",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1228.html",
          "name" : "RHSA-2015:1228",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1229.html",
          "name" : "RHSA-2015:1229",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1230.html",
          "name" : "RHSA-2015:1230",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1526.html",
          "name" : "RHSA-2015:1526",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1544.html",
          "name" : "RHSA-2015:1544",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1624.html",
          "name" : "RHSA-2016:1624",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2056.html",
          "name" : "RHSA-2016:2056",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://support.apple.com/kb/HT204941",
          "name" : "http://support.apple.com/kb/HT204941",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://support.apple.com/kb/HT204942",
          "name" : "http://support.apple.com/kb/HT204942",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://support.citrix.com/article/CTX201114",
          "name" : "http://support.citrix.com/article/CTX201114",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3287",
          "name" : "DSA-3287",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3300",
          "name" : "DSA-3300",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3324",
          "name" : "DSA-3324",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3339",
          "name" : "DSA-3339",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3688",
          "name" : "DSA-3688",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.fortiguard.com/advisory/2015-05-20-logjam-attack",
          "name" : "http://www.fortiguard.com/advisory/2015-05-20-logjam-attack",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.mozilla.org/security/announce/2015/mfsa2015-70.html",
          "name" : "http://www.mozilla.org/security/announce/2015/mfsa2015-70.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74733",
          "name" : "74733",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91787",
          "name" : "91787",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032474",
          "name" : "1032474",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032475",
          "name" : "1032475",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032476",
          "name" : "1032476",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032637",
          "name" : "1032637",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032645",
          "name" : "1032645",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032647",
          "name" : "1032647",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032648",
          "name" : "1032648",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032649",
          "name" : "1032649",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032650",
          "name" : "1032650",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032651",
          "name" : "1032651",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032652",
          "name" : "1032652",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032653",
          "name" : "1032653",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032654",
          "name" : "1032654",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032655",
          "name" : "1032655",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032656",
          "name" : "1032656",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032688",
          "name" : "1032688",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032699",
          "name" : "1032699",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032702",
          "name" : "1032702",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032727",
          "name" : "1032727",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032759",
          "name" : "1032759",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032777",
          "name" : "1032777",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032778",
          "name" : "1032778",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032783",
          "name" : "1032783",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032784",
          "name" : "1032784",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032856",
          "name" : "1032856",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032864",
          "name" : "1032864",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032865",
          "name" : "1032865",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032871",
          "name" : "1032871",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032884",
          "name" : "1032884",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032932",
          "name" : "1032932",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032960",
          "name" : "1032960",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033019",
          "name" : "1033019",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033064",
          "name" : "1033064",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033065",
          "name" : "1033065",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033067",
          "name" : "1033067",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033208",
          "name" : "1033208",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033209",
          "name" : "1033209",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033210",
          "name" : "1033210",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033222",
          "name" : "1033222",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033341",
          "name" : "1033341",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033385",
          "name" : "1033385",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033416",
          "name" : "1033416",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033430",
          "name" : "1033430",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033433",
          "name" : "1033433",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033513",
          "name" : "1033513",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033760",
          "name" : "1033760",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033891",
          "name" : "1033891",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033991",
          "name" : "1033991",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1034087",
          "name" : "1034087",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1034728",
          "name" : "1034728",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1034884",
          "name" : "1034884",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036218",
          "name" : "1036218",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040630",
          "name" : "1040630",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.solarwinds.com/documentation/storage/storagemanager/docs/ReleaseNotes/releaseNotes.htm",
          "name" : "http://www.solarwinds.com/documentation/storage/storagemanager/docs/ReleaseNotes/releaseNotes.htm",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2656-1",
          "name" : "USN-2656-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2656-2",
          "name" : "USN-2656-2",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2673-1",
          "name" : "USN-2673-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2696-1",
          "name" : "USN-2696-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2706-1",
          "name" : "USN-2706-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959111",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959111",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959195",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959195",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959325",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959325",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959453",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959453",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959481",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959481",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959517",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959517",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959530",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959530",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959539",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959539",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959636",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959636",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959812",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21959812",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21960191",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21960191",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21961717",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21961717",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21962455",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21962455",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21962739",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=swg21962739",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-304.ibm.com/support/docview.wss?uid=swg21958984",
          "name" : "http://www-304.ibm.com/support/docview.wss?uid=swg21958984",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-304.ibm.com/support/docview.wss?uid=swg21959132",
          "name" : "http://www-304.ibm.com/support/docview.wss?uid=swg21959132",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-304.ibm.com/support/docview.wss?uid=swg21960041",
          "name" : "http://www-304.ibm.com/support/docview.wss?uid=swg21960041",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-304.ibm.com/support/docview.wss?uid=swg21960194",
          "name" : "http://www-304.ibm.com/support/docview.wss?uid=swg21960194",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-304.ibm.com/support/docview.wss?uid=swg21960380",
          "name" : "http://www-304.ibm.com/support/docview.wss?uid=swg21960380",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-304.ibm.com/support/docview.wss?uid=swg21960418",
          "name" : "http://www-304.ibm.com/support/docview.wss?uid=swg21960418",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-304.ibm.com/support/docview.wss?uid=swg21962816",
          "name" : "http://www-304.ibm.com/support/docview.wss?uid=swg21962816",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-304.ibm.com/support/docview.wss?uid=swg21967893",
          "name" : "http://www-304.ibm.com/support/docview.wss?uid=swg21967893",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://blog.cloudflare.com/logjam-the-latest-tls-vulnerability-explained/",
          "name" : "https://blog.cloudflare.com/logjam-the-latest-tls-vulnerability-explained/",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://bto.bluecoat.com/security-advisory/sa98",
          "name" : "https://bto.bluecoat.com/security-advisory/sa98",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.mozilla.org/show_bug.cgi?id=1138554",
          "name" : "https://bugzilla.mozilla.org/show_bug.cgi?id=1138554",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.19.1_release_notes",
          "name" : "https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.19.1_release_notes",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04718196",
          "name" : "SSRT102112",
          "refsource" : "HP",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04770140",
          "name" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04770140",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04772190",
          "name" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04772190",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04773119",
          "name" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04773119",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04773241",
          "name" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04773241",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04832246",
          "name" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04832246",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04918839",
          "name" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04918839",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04923929",
          "name" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04923929",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04926789",
          "name" : "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04926789",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04740527",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04740527",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04953655",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04953655",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05045763",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05045763",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05128722",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05128722",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05193083",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05193083",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes",
          "name" : "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10122",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10122",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://openssl.org/news/secadv/20150611.txt",
          "name" : "https://openssl.org/news/secadv/20150611.txt",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://puppet.com/security/cve/CVE-2015-4000",
          "name" : "https://puppet.com/security/cve/CVE-2015-4000",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201506-02",
          "name" : "GLSA-201506-02",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201512-10",
          "name" : "GLSA-201512-10",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-46",
          "name" : "GLSA-201701-46",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20150619-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20150619-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.citrix.com/article/CTX216642",
          "name" : "https://support.citrix.com/article/CTX216642",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03831en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03831en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://weakdh.org/",
          "name" : "https://weakdh.org/",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://weakdh.org/imperfect-forward-secrecy.pdf",
          "name" : "https://weakdh.org/imperfect-forward-secrecy.pdf",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.openssl.org/blog/blog/2015/05/20/logjam-freak-upcoming-changes/",
          "name" : "https://www.openssl.org/blog/blog/2015/05/20/logjam-freak-upcoming-changes/",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://www.openssl.org/news/secadv_20150611.txt",
          "name" : "https://www.openssl.org/news/secadv_20150611.txt",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://www.suse.com/security/cve/CVE-2015-4000.html",
          "name" : "https://www.suse.com/security/cve/CVE-2015-4000.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www-304.ibm.com/support/docview.wss?uid=swg21959745",
          "name" : "https://www-304.ibm.com/support/docview.wss?uid=swg21959745",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5098403",
          "name" : "https://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5098403",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The TLS protocol 1.2 and earlier, when a DHE_EXPORT ciphersuite is enabled on a server but not on a client, does not properly convey a DHE_EXPORT choice, which allows man-in-the-middle attackers to conduct cipher-downgrade attacks by rewriting a ClientHello with DHE replaced by DHE_EXPORT and then rewriting a ServerHello with DHE_EXPORT replaced by DHE, aka the \"Logjam\" issue."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "1.0.1",
          "versionEndIncluding" : "1.0.1m"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "1.0.2",
          "versionEndIncluding" : "1.0.2a"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.04:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:openssl:openssl:*:*:*:*:*:*:*:*",
            "versionEndIncluding" : "1.0.1m"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:hp:hp-ux:b.11.31:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:content_manager:8.5:*:*:*:*:enterprise:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.6:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:12:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11.0:sp4:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_software_development_kit:12:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:suse_linux_enterprise_server:12:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "8.3"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "10.10.3"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:mozilla:network_security_services:3.19:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:sparc-opl_service_processor:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "1121"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:google:chrome:-:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:microsoft:ie:*:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:opera:opera_browser:-:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:mozilla:firefox:39.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:mozilla:firefox_esr:31.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:mozilla:firefox_esr:38.1.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:mozilla:seamonkey:2.35:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:mozilla:thunderbird:31.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:mozilla:thunderbird:38.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:mozilla:firefox_os:2.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 3.7,
          "baseSeverity" : "LOW"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-05-21T00:59Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4106",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "citrix",
            "product" : {
              "product_data" : [ {
                "product_name" : "xenserver",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.5",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.3.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "fedoraproject",
            "product" : {
              "product_data" : [ {
                "product_name" : "fedora",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "22",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "suse",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_software_development_kit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-863"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-June/160154.html",
          "name" : "FEDORA-2015-9466",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-June/160171.html",
          "name" : "FEDORA-2015-9456",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-June/160685.html",
          "name" : "FEDORA-2015-9965",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00004.html",
          "name" : "SUSE-SU-2015:1042",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00007.html",
          "name" : "SUSE-SU-2015:1045",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00029.html",
          "name" : "SUSE-SU-2015:1156",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00030.html",
          "name" : "SUSE-SU-2015:1157",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://support.citrix.com/article/CTX201145",
          "name" : "http://support.citrix.com/article/CTX201145",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3284",
          "name" : "DSA-3284",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3286",
          "name" : "DSA-3286",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/74949",
          "name" : "74949",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032467",
          "name" : "1032467",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2630-1",
          "name" : "USN-2630-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://xenbits.xen.org/xsa/advisory-131.html",
          "name" : "http://xenbits.xen.org/xsa/advisory-131.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201604-03",
          "name" : "GLSA-201604-03",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.citrix.com/article/CTX206006",
          "name" : "https://support.citrix.com/article/CTX206006",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "QEMU does not properly restrict write access to the PCI config space for certain PCI pass-through devices, which might allow local x86 HVM guests to gain privileges, cause a denial of service (host crash), obtain sensitive information, or possibly have other unspecified impact via unknown vectors."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.3.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:20:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:21:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:11:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:12:-:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp1:*:*:ltss:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp2:*:*:ltss:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp3:*:*:*:-:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:12:-:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_software_development_kit:11:sp3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_software_development_kit:12:-:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:citrix:xenserver:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:citrix:xenserver:6.0.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:citrix:xenserver:6.1.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:citrix:xenserver:6.2.0:-:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:citrix:xenserver:6.5:-:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.04:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.6
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.9,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-06-03T20:59Z",
    "lastModifiedDate" : "2020-09-09T15:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4729",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75892",
          "name" : "75892",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u80 and 8u45 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.</a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T11:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4731",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1228.html",
          "name" : "RHSA-2015:1228",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1229.html",
          "name" : "RHSA-2015:1229",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1230.html",
          "name" : "RHSA-2015:1230",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1526.html",
          "name" : "RHSA-2015:1526",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1544.html",
          "name" : "RHSA-2015:1544",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3339",
          "name" : "DSA-3339",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75812",
          "name" : "75812",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2696-1",
          "name" : "USN-2696-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2706-1",
          "name" : "USN-2706-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45; Java SE Embedded 7u75; and Java SE Embedded 8u33 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JMX."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.</a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T11:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4732",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1228.html",
          "name" : "RHSA-2015:1228",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1229.html",
          "name" : "RHSA-2015:1229",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1230.html",
          "name" : "RHSA-2015:1230",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1526.html",
          "name" : "RHSA-2015:1526",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1544.html",
          "name" : "RHSA-2015:1544",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3339",
          "name" : "DSA-3339",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75823",
          "name" : "75823",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2696-1",
          "name" : "USN-2696-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2706-1",
          "name" : "USN-2706-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2015-2590."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.</a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T11:00Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4733",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1228.html",
          "name" : "RHSA-2015:1228",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1229.html",
          "name" : "RHSA-2015:1229",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1230.html",
          "name" : "RHSA-2015:1230",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1526.html",
          "name" : "RHSA-2015:1526",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1544.html",
          "name" : "RHSA-2015:1544",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3339",
          "name" : "DSA-3339",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75832",
          "name" : "75832",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2696-1",
          "name" : "USN-2696-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2706-1",
          "name" : "USN-2706-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.</a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T11:00Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4734",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77192",
          "name" : "77192",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85 and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality via vectors related to JGSS."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T21:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4736",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75850",
          "name" : "75850",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u80 and 8u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.</a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T11:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4748",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.6",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727",
          "name" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1228.html",
          "name" : "RHSA-2015:1228",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1229.html",
          "name" : "RHSA-2015:1229",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1230.html",
          "name" : "RHSA-2015:1230",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1526.html",
          "name" : "RHSA-2015:1526",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1544.html",
          "name" : "RHSA-2015:1544",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3339",
          "name" : "DSA-3339",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75854",
          "name" : "75854",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1037732",
          "name" : "1037732",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2696-1",
          "name" : "USN-2696-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2706-1",
          "name" : "USN-2706-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10139",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10139",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45; JRockit R28.3.6; and Java SE Embedded 7u75 and Embedded 8u33 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Security."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.6:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.6
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 4.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T11:00Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4749",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.6",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727",
          "name" : "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1228.html",
          "name" : "RHSA-2015:1228",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1229.html",
          "name" : "RHSA-2015:1229",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1230.html",
          "name" : "RHSA-2015:1230",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1526.html",
          "name" : "RHSA-2015:1526",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1544.html",
          "name" : "RHSA-2015:1544",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3339",
          "name" : "DSA-3339",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75890",
          "name" : "75890",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2696-1",
          "name" : "USN-2696-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2706-1",
          "name" : "USN-2706-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10139",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10139",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45; JRockit R28.3.6; and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect availability via vectors related to JNDI."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service.</a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.6:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_75:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_33:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T11:00Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4760",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html",
          "name" : "openSUSE-SU-2015:1288",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html",
          "name" : "openSUSE-SU-2015:1289",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html",
          "name" : "SUSE-SU-2015:1319",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html",
          "name" : "SUSE-SU-2015:1320",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1228.html",
          "name" : "RHSA-2015:1228",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1229.html",
          "name" : "RHSA-2015:1229",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1230.html",
          "name" : "RHSA-2015:1230",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1241.html",
          "name" : "RHSA-2015:1241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1242.html",
          "name" : "RHSA-2015:1242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1243.html",
          "name" : "RHSA-2015:1243",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1485.html",
          "name" : "RHSA-2015:1485",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1486.html",
          "name" : "RHSA-2015:1486",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1488.html",
          "name" : "RHSA-2015:1488",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1526.html",
          "name" : "RHSA-2015:1526",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1544.html",
          "name" : "RHSA-2015:1544",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1604.html",
          "name" : "RHSA-2015:1604",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3316",
          "name" : "DSA-3316",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3323",
          "name" : "DSA-3323",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3339",
          "name" : "DSA-3339",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/75784",
          "name" : "75784",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1032910",
          "name" : "1032910",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2696-1",
          "name" : "USN-2696-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2706-1",
          "name" : "USN-2706-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2740-1",
          "name" : "USN-2740-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D."
        }, {
          "lang" : "en",
          "value" : "Per Advisory: <a href=\"http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html\">Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets.</a>"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update45:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_95:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_80:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_45:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-07-16T11:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4803",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.7",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77200",
          "name" : "77200",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10141",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10141",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4893 and CVE-2015-4911."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.7:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T21:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4805",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2518.html",
          "name" : "RHSA-2015:2518",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77163",
          "name" : "77163",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Serialization."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T21:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4806",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2518.html",
          "name" : "RHSA-2015:2518",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77126",
          "name" : "77126",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality and integrity via unknown vectors related to Libraries."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 6.4
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T21:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4810",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77229",
          "name" : "77229",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u85 and 8u60 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 6.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.4,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T21:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4835",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77148",
          "name" : "77148",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA, a different vulnerability than CVE-2015-4881."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T23:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4840",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77242",
          "name" : "77242",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u85 and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality via unknown vectors related to 2D."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T23:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4842",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77154",
          "name" : "77154",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality via vectors related to JAXP."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T23:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4843",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2518.html",
          "name" : "RHSA-2015:2518",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77160",
          "name" : "77160",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T23:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4844",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2518.html",
          "name" : "RHSA-2015:2518",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77164",
          "name" : "77164",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T23:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4860",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2518.html",
          "name" : "RHSA-2015:2518",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77162",
          "name" : "77162",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI, a different vulnerability than CVE-2015-4883."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T23:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4868",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77225",
          "name" : "77225",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10141",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10141",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u60 and Java SE Embedded 8u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.6
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 4.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T23:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4872",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.7",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2518.html",
          "name" : "RHSA-2015:2518",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77211",
          "name" : "77211",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10141",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10141",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allows remote attackers to affect integrity via unknown vectors related to Security."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.7:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T23:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4881",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77159",
          "name" : "77159",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA, a different vulnerability than CVE-2015-4835."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T23:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4882",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77181",
          "name" : "77181",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect availability via vectors related to CORBA."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T23:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4883",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2518.html",
          "name" : "RHSA-2015:2518",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77161",
          "name" : "77161",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI, a different vulnerability than CVE-2015-4860."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T23:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4893",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.7",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77207",
          "name" : "77207",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10141",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10141",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4803 and CVE-2015-4911."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.7:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-21T23:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4901",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77226",
          "name" : "77226",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u60 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to JavaFX."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-22T00:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4902",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2518.html",
          "name" : "RHSA-2015:2518",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77241",
          "name" : "77241",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60 allows remote attackers to affect integrity via unknown vectors related to Deployment."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-22T00:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4903",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2506.html",
          "name" : "RHSA-2015:2506",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2507.html",
          "name" : "RHSA-2015:2507",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2508.html",
          "name" : "RHSA-2015:2508",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2509.html",
          "name" : "RHSA-2015:2509",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2518.html",
          "name" : "RHSA-2015:2518",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77194",
          "name" : "77194",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality via vectors related to RMI."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-22T00:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4906",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.85",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77214",
          "name" : "77214",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u60 and JavaFX 2.2.85 allows remote attackers to affect confidentiality via unknown vectors related to JavaFX, a different vulnerability than CVE-2015-4908 and CVE-2015-4916."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.85:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-22T00:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4908",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.85",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77223",
          "name" : "77223",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u60 and JavaFX 2.2.85 allows remote attackers to affect confidentiality via unknown vectors, a different vulnerability than CVE-2015-4906 and CVE-2015-4916."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.85:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-22T00:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4911",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.7",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.html",
          "name" : "SUSE-SU-2015:1874",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.html",
          "name" : "SUSE-SU-2015:1875",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.html",
          "name" : "openSUSE-SU-2015:1902",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.html",
          "name" : "openSUSE-SU-2015:1906",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.html",
          "name" : "openSUSE-SU-2015:1971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html",
          "name" : "SUSE-SU-2015:2166",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html",
          "name" : "SUSE-SU-2015:2168",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html",
          "name" : "SUSE-SU-2015:2182",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html",
          "name" : "SUSE-SU-2015:2192",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html",
          "name" : "SUSE-SU-2015:2216",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html",
          "name" : "SUSE-SU-2015:2268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html",
          "name" : "SUSE-SU-2016:0113",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1919.html",
          "name" : "RHSA-2015:1919",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1920.html",
          "name" : "RHSA-2015:1920",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1921.html",
          "name" : "RHSA-2015:1921",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1927.html",
          "name" : "RHSA-2015:1927",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1928.html",
          "name" : "RHSA-2015:1928",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3381",
          "name" : "DSA-3381",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77209",
          "name" : "77209",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2784-1",
          "name" : "USN-2784-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2827-1",
          "name" : "USN-2827-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10141",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10141",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4803 and CVE-2015-4893."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.7:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_85:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_51:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-22T00:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-4916",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "javafx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.85",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html",
          "name" : "openSUSE-SU-2015:1905",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-1926.html",
          "name" : "RHSA-2015:1926",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/77221",
          "name" : "77221",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033884",
          "name" : "1033884",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-11",
          "name" : "GLSA-201603-11",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u60 and JavaFX 2.2.85 allows remote attackers to affect confidentiality via unknown vectors, a different vulnerability than CVE-2015-4906 and CVE-2015-4908."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html\">LINK</a>:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update60:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_60:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:javafx:2.2.85:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-10-22T00:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-5158",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-787"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/76016",
          "name" : "76016",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1033095",
          "name" : "1033095",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://lists.nongnu.org/archive/html/qemu-devel/2015-07/msg04558.html",
          "name" : "[Qemu-devel] 20150722 [PATCH] scsi: fix buffer overflow in scsi_req_parse_cdb (CVE-2015-5158)",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201510-02",
          "name" : "GLSA-201510-02",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Stack-based buffer overflow in hw/scsi/scsi-bus.c in QEMU, when built with SCSI-device emulation support, allows guest OS users with CAP_SYS_RAWIO permissions to cause a denial of service (instance crash) via an invalid opcode in a SCSI command descriptor block."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "2.2.0",
          "versionEndExcluding" : "2.4.0"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.4.0:-:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.4.0:rc1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.4.0:rc2:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 2.1
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.9,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-04-12T01:59Z",
    "lastModifiedDate" : "2020-09-08T13:54Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-5224",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "kernel",
            "product" : {
              "product_data" : [ {
                "product_name" : "util-linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.26.2",
                    "version_affected" : "<="
                  }, {
                    "version_value" : "2.27",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2015/08/24/3",
          "name" : "[oss-security] 20150824 CVE-2015-5224 login-utils: file name collision due to incorrect mkstemp use",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/76467",
          "name" : "76467",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1256686",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1256686",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/karelzak/util-linux/commit/bde91c85bdc77975155058276f99d2e0f5eab5a9",
          "name" : "https://github.com/karelzak/util-linux/commit/bde91c85bdc77975155058276f99d2e0f5eab5a9",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The mkostemp function in login-utils in util-linux when used incorrectly allows remote attackers to cause file name collision and possibly other attacks."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:kernel:util-linux:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.26.2"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:kernel:util-linux:2.27:rc1:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-23T15:29Z",
    "lastModifiedDate" : "2020-09-11T15:20Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-6674",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "inspircd",
            "product" : {
              "product_data" : [ {
                "product_name" : "inspircd",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.0.19",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2015/dsa-3226",
          "name" : "DSA-3226",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=780880",
          "name" : "https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=780880",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201512-13",
          "name" : "GLSA-201512-13",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Buffer underflow vulnerability in the Debian inspircd package before 2.0.5-1+deb7u1 for wheezy and before 2.0.16-1 for jessie and sid. NOTE: This issue exists as an additional issue from an incomplete fix of CVE-2012-1836."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:inspircd:inspircd:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.0.19"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.8,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "acInsufInfo" : true,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-04-13T14:59Z",
    "lastModifiedDate" : "2020-09-14T12:33Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-6855",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.4.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "fedoraproject",
            "product" : {
              "product_data" : [ {
                "product_name" : "fedora",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "23",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "suse",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-369"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-October/168602.html",
          "name" : "FEDORA-2015-8dc71ade88",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-October/169036.html",
          "name" : "FEDORA-2015-16369",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-October/169039.html",
          "name" : "FEDORA-2015-16368",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-October/169327.html",
          "name" : "FEDORA-2015-4896530727",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-October/169341.html",
          "name" : "FEDORA-2015-d6ea74993a",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-September/167369.html",
          "name" : "FEDORA-2015-16370",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00019.html",
          "name" : "SUSE-SU-2015:1782",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3361",
          "name" : "DSA-3361",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2015/dsa-3362",
          "name" : "DSA-3362",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/09/10/1",
          "name" : "[oss-security] 20150910 CVE request Qemu: ide: divide by zero issue",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/09/10/2",
          "name" : "[oss-security] 20150910 Re: CVE request Qemu: ide: divide by zero issue",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/76691",
          "name" : "76691",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2745-1",
          "name" : "USN-2745-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2015-09/msg02479.html",
          "name" : "[Qemu-devel] 20150907 [PATCH] ide: fix ATAPI command permissions",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201602-01",
          "name" : "GLSA-201602-01",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "hw/ide/core.c in QEMU does not properly restrict the commands accepted by an ATAPI device, which allows guest users to cause a denial of service or possibly have unspecified other impact via certain IDE commands, as demonstrated by a WIN_READ_NATIVE_MAX command to an empty drive, which triggers a divide-by-zero error and instance crash."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.4.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:21:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:23:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:12:-:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:12:-:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.04:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-11-06T21:59Z",
    "lastModifiedDate" : "2020-09-09T15:14Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-7295",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.4.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "fedoraproject",
            "product" : {
              "product_data" : [ {
                "product_name" : "fedora",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "22",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-October/169624.html",
          "name" : "FEDORA-2015-d8510319c0",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-October/169767.html",
          "name" : "FEDORA-2015-fca1900745",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2015-October/169802.html",
          "name" : "FEDORA-2015-d5c1048b47",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3469",
          "name" : "DSA-3469",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3470",
          "name" : "DSA-3470",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3471",
          "name" : "DSA-3471",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/09/18/5",
          "name" : "[oss-security] 20150918 CVE request Qemu: net: virtio-net possible remote DoS",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/09/18/9",
          "name" : "[oss-security] 20150918 Re: CVE request Qemu: net: virtio-net possible remote DoS",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/82672",
          "name" : "82672",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201602-01",
          "name" : "GLSA-201602-01",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "hw/virtio/virtio.c in the Virtual Network Device (virtio-net) support in QEMU, when big or mergeable receive buffers are not supported, allows remote attackers to cause a denial of service (guest network consumption) via a flood of jumbo frames on the (1) tuntap or (2) macvtap interface."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.4.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:21:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2015-11-09T16:59Z",
    "lastModifiedDate" : "2020-09-09T15:14Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-7512",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.4.1",
                    "version_affected" : "<="
                  }, {
                    "version_value" : "2.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "openstack",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "virtualization",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.7",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-120"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://git.qemu.org/?p=qemu.git;a=commit;h=8b98a2f07175d46c3f7217639bd5e03f",
          "name" : "http://git.qemu.org/?p=qemu.git;a=commit;h=8b98a2f07175d46c3f7217639bd5e03f",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2694.html",
          "name" : "RHSA-2015:2694",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2695.html",
          "name" : "RHSA-2015:2695",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2015-2696.html",
          "name" : "RHSA-2015:2696",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3469",
          "name" : "DSA-3469",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3470",
          "name" : "DSA-3470",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3471",
          "name" : "DSA-3471",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/11/30/3",
          "name" : "[oss-security] 20151130 CVE-2015-7512 Qemu: net: pcnet: buffer overflow in non-loopback mode",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/78230",
          "name" : "78230",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1034527",
          "name" : "1034527",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201602-01",
          "name" : "GLSA-201602-01",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Buffer overflow in the pcnet_receive function in hw/net/pcnet.c in QEMU, when a guest NIC has a larger MTU, allows remote attackers to cause a denial of service (guest OS crash) or execute arbitrary code via a large packet."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.4.1"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.5.0:rc0:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.5.0:rc1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.5.0:rc2:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:6.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:redhat:openstack:5.0:*:*:*:*:*:*:*"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:redhat:virtualization:3.0:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:6:-:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-01-08T21:59Z",
    "lastModifiedDate" : "2020-09-09T15:14Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-8504",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.4.1",
                    "version_affected" : "<="
                  }, {
                    "version_value" : "2.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-369"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://git.qemu-project.org/?p=qemu.git;a=commitdiff;h=4c65fed8bdf96780735dbdb92a8",
          "name" : "http://git.qemu-project.org/?p=qemu.git;a=commitdiff;h=4c65fed8bdf96780735dbdb92a8",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory", "Vendor Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3469",
          "name" : "DSA-3469",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3470",
          "name" : "DSA-3470",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3471",
          "name" : "DSA-3471",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/12/08/7",
          "name" : "[oss-security] 20151208 Re: CVE request: Qemu: ui: vnc: avoid floating point exception",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/78708",
          "name" : "78708",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1289541",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1289541",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201602-01",
          "name" : "GLSA-201602-01",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Qemu, when built with VNC display driver support, allows remote attackers to cause a denial of service (arithmetic exception and application crash) via crafted SetPixelFormat messages from a client."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.4.1"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.5.0:rc0:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.5.0:rc1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.5.0:rc2:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:S/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 3.5
        },
        "severity" : "LOW",
        "exploitabilityScore" : 6.8,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-04-11T19:59Z",
    "lastModifiedDate" : "2020-09-09T15:13Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-8558",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.5.1.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-835"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://git.qemu.org/?p=qemu.git;a=commit;h=156a2e4dbffa85997636a7a39ef12da6f1b40254",
          "name" : "http://git.qemu.org/?p=qemu.git;a=commit;h=156a2e4dbffa85997636a7a39ef12da6f1b40254",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3469",
          "name" : "DSA-3469",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3470",
          "name" : "DSA-3470",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3471",
          "name" : "DSA-3471",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/12/14/16",
          "name" : "[oss-security] 20151214 Re: CVE request Qemu: usb: infinite loop in ehci_advance_state results in DoS",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/12/14/9",
          "name" : "[oss-security] 20151214 CVE request Qemu: usb: infinite loop in ehci_advance_state results in DoS",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/80694",
          "name" : "80694",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1277983",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1277983",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2015-12/msg02124.html",
          "name" : "[qemu-devel] 20151214 [PATCH] ehci: make idt processing more robust",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201602-01",
          "name" : "GLSA-201602-01",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The ehci_process_itd function in hw/usb/hcd-ehci.c in QEMU allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via a circular isochronous transfer descriptor (iTD) list."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.5.1.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:N/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 4.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.9,
        "impactScore" : 6.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-05-23T19:59Z",
    "lastModifiedDate" : "2020-09-09T15:13Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-8567",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.5.1.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "suse",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux_enterprise_debuginfo",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux_enterprise_software_development_kit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "fedoraproject",
            "product" : {
              "product_data" : [ {
                "product_name" : "fedora",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "23",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "leap",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "42.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-401"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2016-February/176503.html",
          "name" : "FEDORA-2016-e1784417af",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2016-February/176558.html",
          "name" : "FEDORA-2016-275e9ff483",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2016-January/175967.html",
          "name" : "FEDORA-2016-42778e8c82",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.fedoraproject.org/pipermail/package-announce/2016-January/176300.html",
          "name" : "FEDORA-2016-2c15b72b01",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00010.html",
          "name" : "openSUSE-SU-2016:0123",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00012.html",
          "name" : "openSUSE-SU-2016:0126",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00087.html",
          "name" : "SUSE-SU-2016:0873",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00002.html",
          "name" : "SUSE-SU-2016:0955",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00049.html",
          "name" : "SUSE-SU-2016:1318",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00017.html",
          "name" : "SUSE-SU-2016:1560",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00058.html",
          "name" : "SUSE-SU-2016:1703",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-07/msg00003.html",
          "name" : "openSUSE-SU-2016:1750",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3471",
          "name" : "DSA-3471",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/12/15/10",
          "name" : "[oss-security] 20151215 Re: CVE request Qemu: net: vmxnet3: host memory leakage",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/79721",
          "name" : "79721",
          "refsource" : "BID",
          "tags" : [ "Mailing List", "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2891-1",
          "name" : "USN-2891-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2015-12/msg02299.html",
          "name" : "[qemu-devel] 20151215 Re: [Qemu-devel] net: vmxnet3: memory leakage issue",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201602-01",
          "name" : "GLSA-201602-01",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Memory leak in net/vmxnet3.c in QEMU allows remote attackers to cause a denial of service (memory consumption)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.5.1.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:suse:linux_enterprise_debuginfo:11:sp4:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:leap:42.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:11:sp4:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:12:-:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_desktop:12:sp1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:11:sp4:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:12:-:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_server:12:sp1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_software_development_kit:11:sp4:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_software_development_kit:12:-:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:suse:linux_enterprise_software_development_kit:12:sp1:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:23:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:N/I:N/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 6.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-04-13T17:59Z",
    "lastModifiedDate" : "2020-09-09T15:12Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-8568",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.5.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-772"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2016/dsa-3471",
          "name" : "DSA-3471",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/12/15/10",
          "name" : "[oss-security] 20151215 Re: CVE request Qemu: net: vmxnet3: host memory leakage",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/79721",
          "name" : "79721",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1289816",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1289816",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2015-12/msg02299.html",
          "name" : "[qemu-devel] 20151215 Re: [Qemu-devel] net: vmxnet3: memory leakage issue",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201602-01",
          "name" : "GLSA-201602-01",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Memory leak in QEMU, when built with a VMWARE VMXNET3 paravirtual NIC emulator support, allows local guest users to cause a denial of service (host memory consumption) by trying to activate the vmxnet3 device repeatedly."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.5.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:N/I:N/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 4.7
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.4,
        "impactScore" : 6.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-04-11T19:59Z",
    "lastModifiedDate" : "2020-09-10T17:42Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-8613",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.5.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-787"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2016/dsa-3471",
          "name" : "DSA-3471",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/12/22/1",
          "name" : "[oss-security] 20151221 Re: CVE request: Qemu: scsi: stack based buffer overflow in megasas_ctrl_get_info",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/79719",
          "name" : "79719",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1284008",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1284008",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2015-12/msg03737.html",
          "name" : "[qemu-devel] 20151221 [Qemu-devel] [PATCH] scsi: initialise info object with appropriate size",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201604-01",
          "name" : "GLSA-201604-01",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Stack-based buffer overflow in the megasas_ctrl_get_info function in QEMU, when built with SCSI MegaRAID SAS HBA emulation support, allows local guest users to cause a denial of service (QEMU instance crash) via a crafted SCSI controller CTRL_GET_INFO command."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.5.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 1.9
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.4,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-04-11T19:59Z",
    "lastModifiedDate" : "2020-09-11T15:20Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-8702",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "inspircd",
            "product" : {
              "product_data" : [ {
                "product_name" : "inspircd",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.0.18",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-20"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2016/dsa-3527",
          "name" : "DSA-3527",
          "refsource" : "DEBIAN",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.inspircd.org/2015/04/16/v2019-released.html",
          "name" : "http://www.inspircd.org/2015/04/16/v2019-released.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://github.com/inspircd/inspircd/commit/6058483d9fbc1b904d5ae7cfea47bfcde5c5b559",
          "name" : "https://github.com/inspircd/inspircd/commit/6058483d9fbc1b904d5ae7cfea47bfcde5c5b559",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit" ]
        }, {
          "url" : "https://github.com/inspircd/inspircd/issues/1033",
          "name" : "https://github.com/inspircd/inspircd/issues/1033",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201512-13",
          "name" : "GLSA-201512-13",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The DNS::GetResult function in dns.cpp in InspIRCd before 2.0.19 allows remote DNS servers to cause a denial of service (netsplit) via an invalid character in a PTR response, as demonstrated by a \"\\032\" (whitespace) character in a hostname."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:inspircd:inspircd:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.0.18"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "CHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.6,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 4.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.8
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false
      }
    },
    "publishedDate" : "2016-04-12T14:59Z",
    "lastModifiedDate" : "2020-09-14T12:33Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-8806",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "xmlsoft",
            "product" : {
              "product_data" : [ {
                "product_name" : "libxml2",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.3",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2016/02/03/5",
          "name" : "[oss-security] 20160203 Re: Out-of-bounds Read in the libxml2's htmlParseNameComplex() function",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/82071",
          "name" : "82071",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2994-1",
          "name" : "USN-2994-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.gnome.org/show_bug.cgi?id=749115",
          "name" : "https://bugzilla.gnome.org/show_bug.cgi?id=749115",
          "refsource" : "MISC",
          "tags" : [ "Issue Tracking", "Vendor Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-37",
          "name" : "GLSA-201701-37",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2016/dsa-3593",
          "name" : "DSA-3593",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "dict.c in libxml2 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via an unexpected character immediately after the \"<!DOCTYPE html\" substring in a crafted HTML document."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:xmlsoft:libxml2:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "2.9.4"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : true,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-04-13T17:59Z",
    "lastModifiedDate" : "2020-09-11T15:32Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2015-8871",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.0",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-416"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2016/dsa-3665",
          "name" : "DSA-3665",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2015/09/15/4",
          "name" : "[oss-security] 20150915 CVE Request : Use-after-free in openjpeg",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/05/13/1",
          "name" : "[oss-security] 20160512 Re: CVE Request : Use-after-free in openjpeg",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038623",
          "name" : "1038623",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1263359",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1263359",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/blob/master/CHANGELOG.md",
          "name" : "https://github.com/uclouvain/openjpeg/blob/master/CHANGELOG.md",
          "refsource" : "CONFIRM",
          "tags" : [ "Release Notes", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/commit/940100c28ae28931722290794889cf84a92c5f6f",
          "name" : "https://github.com/uclouvain/openjpeg/commit/940100c28ae28931722290794889cf84a92c5f6f",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/563",
          "name" : "https://github.com/uclouvain/openjpeg/issues/563",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201612-26",
          "name" : "GLSA-201612-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Use-after-free vulnerability in the opj_j2k_write_mco function in j2k.c in OpenJPEG before 2.1.1 allows remote attackers to have unspecified impact via unknown vectors."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.1.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.8,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "acInsufInfo" : true,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-09-21T14:25Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-0402",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00038.html",
          "name" : "SUSE-SU-2016:0256",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00041.html",
          "name" : "openSUSE-SU-2016:0263",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00042.html",
          "name" : "SUSE-SU-2016:0265",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00043.html",
          "name" : "openSUSE-SU-2016:0268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00044.html",
          "name" : "SUSE-SU-2016:0269",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00047.html",
          "name" : "openSUSE-SU-2016:0272",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00048.html",
          "name" : "openSUSE-SU-2016:0279",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0049.html",
          "name" : "RHSA-2016:0049",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0050.html",
          "name" : "RHSA-2016:0050",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0053.html",
          "name" : "RHSA-2016:0053",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0054.html",
          "name" : "RHSA-2016:0054",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0055.html",
          "name" : "RHSA-2016:0055",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0056.html",
          "name" : "RHSA-2016:0056",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0057.html",
          "name" : "RHSA-2016:0057",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0067.html",
          "name" : "RHSA-2016:0067",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3458",
          "name" : "DSA-3458",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3465",
          "name" : "DSA-3465",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/81096",
          "name" : "81096",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1034715",
          "name" : "1034715",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2884-1",
          "name" : "USN-2884-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2885-1",
          "name" : "USN-2885-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66 and Java SE Embedded 8u65 allows remote attackers to affect integrity via unknown vectors related to Networking."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.04:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_105:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update66:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_105:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_66:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-01-21T02:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-0448",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00038.html",
          "name" : "SUSE-SU-2016:0256",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00041.html",
          "name" : "openSUSE-SU-2016:0263",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00042.html",
          "name" : "SUSE-SU-2016:0265",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00043.html",
          "name" : "openSUSE-SU-2016:0268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00044.html",
          "name" : "SUSE-SU-2016:0269",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00047.html",
          "name" : "openSUSE-SU-2016:0272",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00048.html",
          "name" : "openSUSE-SU-2016:0279",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0049.html",
          "name" : "RHSA-2016:0049",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0050.html",
          "name" : "RHSA-2016:0050",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0053.html",
          "name" : "RHSA-2016:0053",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0054.html",
          "name" : "RHSA-2016:0054",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0055.html",
          "name" : "RHSA-2016:0055",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0056.html",
          "name" : "RHSA-2016:0056",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0057.html",
          "name" : "RHSA-2016:0057",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0067.html",
          "name" : "RHSA-2016:0067",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3458",
          "name" : "DSA-3458",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3465",
          "name" : "DSA-3465",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/81123",
          "name" : "81123",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1034715",
          "name" : "1034715",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2884-1",
          "name" : "USN-2884-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2885-1",
          "name" : "USN-2885-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66, and Java SE Embedded 8u65 allows remote authenticated users to affect confidentiality via vectors related to JMX."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_105:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update66:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_105:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_66:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.04:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-01-21T02:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-0466",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00038.html",
          "name" : "SUSE-SU-2016:0256",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00041.html",
          "name" : "openSUSE-SU-2016:0263",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00042.html",
          "name" : "SUSE-SU-2016:0265",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00043.html",
          "name" : "openSUSE-SU-2016:0268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00044.html",
          "name" : "SUSE-SU-2016:0269",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00047.html",
          "name" : "openSUSE-SU-2016:0272",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00048.html",
          "name" : "openSUSE-SU-2016:0279",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0049.html",
          "name" : "RHSA-2016:0049",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0050.html",
          "name" : "RHSA-2016:0050",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0053.html",
          "name" : "RHSA-2016:0053",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0054.html",
          "name" : "RHSA-2016:0054",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0055.html",
          "name" : "RHSA-2016:0055",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0056.html",
          "name" : "RHSA-2016:0056",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0057.html",
          "name" : "RHSA-2016:0057",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0067.html",
          "name" : "RHSA-2016:0067",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3458",
          "name" : "DSA-3458",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3465",
          "name" : "DSA-3465",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/81118",
          "name" : "81118",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1034715",
          "name" : "1034715",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2884-1",
          "name" : "USN-2884-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2885-1",
          "name" : "USN-2885-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10148",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10148",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in the Java SE, Java SE Embedded, and JRockit components in Oracle Java SE 6u105, 7u91, and 8u66; Java SE Embedded 8u65; and JRockit R28.3.8 allows remote attackers to affect availability via vectors related to JAXP."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.04:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_105:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update66:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_105:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_66:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-01-21T03:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-0475",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.8",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00038.html",
          "name" : "SUSE-SU-2016:0256",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0049.html",
          "name" : "RHSA-2016:0049",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0050.html",
          "name" : "RHSA-2016:0050",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0055.html",
          "name" : "RHSA-2016:0055",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1034715",
          "name" : "1034715",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10148",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10148",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in the Java SE, Java SE Embedded, and JRockit components in Oracle Java SE 8u66; Java SE Embedded 8u65; and JRockit R28.3.8 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Libraries."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update66:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_66:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.8:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-01-21T03:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-0483",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.8",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00038.html",
          "name" : "SUSE-SU-2016:0256",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00041.html",
          "name" : "openSUSE-SU-2016:0263",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00042.html",
          "name" : "SUSE-SU-2016:0265",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00043.html",
          "name" : "openSUSE-SU-2016:0268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00044.html",
          "name" : "SUSE-SU-2016:0269",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00047.html",
          "name" : "openSUSE-SU-2016:0272",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00048.html",
          "name" : "openSUSE-SU-2016:0279",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0049.html",
          "name" : "RHSA-2016:0049",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0050.html",
          "name" : "RHSA-2016:0050",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0053.html",
          "name" : "RHSA-2016:0053",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0054.html",
          "name" : "RHSA-2016:0054",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0055.html",
          "name" : "RHSA-2016:0055",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0056.html",
          "name" : "RHSA-2016:0056",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0057.html",
          "name" : "RHSA-2016:0057",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0067.html",
          "name" : "RHSA-2016:0067",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3458",
          "name" : "DSA-3458",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3465",
          "name" : "DSA-3465",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1034715",
          "name" : "1034715",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2884-1",
          "name" : "USN-2884-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2885-1",
          "name" : "USN-2885-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.zerodayinitiative.com/advisories/ZDI-16-032",
          "name" : "http://www.zerodayinitiative.com/advisories/ZDI-16-032",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u105, 7u91, and 8u66; Java SE Embedded 8u65; and JRockit R28.3.8 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT.  NOTE: the previous information is from the January 2016 CPU. Oracle has not commented on third-party claims that this is a heap-based buffer overflow in the readImage function, which allows remote attackers to execute arbitrary code via crafted image data."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_105:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update66:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_105:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_66:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.8:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.04:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-01-21T03:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-0494",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00038.html",
          "name" : "SUSE-SU-2016:0256",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00041.html",
          "name" : "openSUSE-SU-2016:0263",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00042.html",
          "name" : "SUSE-SU-2016:0265",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00043.html",
          "name" : "openSUSE-SU-2016:0268",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00044.html",
          "name" : "SUSE-SU-2016:0269",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html",
          "name" : "openSUSE-SU-2016:0270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00047.html",
          "name" : "openSUSE-SU-2016:0272",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00048.html",
          "name" : "openSUSE-SU-2016:0279",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0049.html",
          "name" : "RHSA-2016:0049",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0050.html",
          "name" : "RHSA-2016:0050",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0053.html",
          "name" : "RHSA-2016:0053",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0054.html",
          "name" : "RHSA-2016:0054",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0055.html",
          "name" : "RHSA-2016:0055",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0056.html",
          "name" : "RHSA-2016:0056",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0057.html",
          "name" : "RHSA-2016:0057",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0067.html",
          "name" : "RHSA-2016:0067",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3458",
          "name" : "DSA-3458",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3465",
          "name" : "DSA-3465",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1034715",
          "name" : "1034715",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2884-1",
          "name" : "USN-2884-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2885-1",
          "name" : "USN-2885-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201603-14",
          "name" : "GLSA-201603-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66 and Java SE Embedded 8u65 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D."
        }, {
          "lang" : "en",
          "value" : "Per Oracle:  Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.04:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_105:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update66:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_105:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_66:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-01-21T03:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-0603",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://seclists.org/fulldisclosure/2016/Feb/54",
          "name" : "20160210 [CVE-2016-0602, CVE-2016-0603] Executable installers are vulnerable^WEVIL (case 24): Oracle Java 6/7/8 SE and VirtualBox",
          "refsource" : "FULLDISC",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/alert-cve-2016-0603-2874360.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/alert-cve-2016-0603-2874360.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/archive/1/537462/100/0/threaded",
          "name" : "20160205 [CVE-2016-0602, CVE-2016-0603] Executable installers are vulnerable^WEVIL (case 24): Oracle Java 6/7/8 SE and VirtualBox",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/83008",
          "name" : "83008",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1034969",
          "name" : "1034969",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160217-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160217-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in the Java SE component in Oracle Java SE 6u111, 7u95, 8u71, and 8u72, when running on Windows, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Install.  NOTE: the previous information is from Oracle's Security Alert for CVE-2016-0603. Oracle has not commented on third-party claims that this is an untrusted search path issue that allows local users to gain privileges via a Trojan horse dll in the \"application directory.\""
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_111:*:*:*:*:*:*"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_95:*:*:*:*:*:*"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_71:*:*:*:*:*:*"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_72:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_111:*:*:*:*:*:*"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_95:*:*:*:*:*:*"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update72:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.6
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 4.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false
      }
    },
    "publishedDate" : "2016-02-08T16:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-0636",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "icedtea7",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.6.6",
                    "version_affected" : "<="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_hpc_node",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00003.html",
          "name" : "SUSE-SU-2016:0956",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00004.html",
          "name" : "SUSE-SU-2016:0957",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00005.html",
          "name" : "SUSE-SU-2016:0959",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00007.html",
          "name" : "openSUSE-SU-2016:0971",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00008.html",
          "name" : "openSUSE-SU-2016:0983",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00013.html",
          "name" : "openSUSE-SU-2016:1004",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00014.html",
          "name" : "openSUSE-SU-2016:1005",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00035.html",
          "name" : "openSUSE-SU-2016:1042",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0511.html",
          "name" : "RHSA-2016:0511",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0512.html",
          "name" : "RHSA-2016:0512",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0513.html",
          "name" : "RHSA-2016:0513",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0514.html",
          "name" : "RHSA-2016:0514",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0515.html",
          "name" : "RHSA-2016:0515",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0516.html",
          "name" : "RHSA-2016:0516",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3558",
          "name" : "DSA-3558",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/alert-cve-2016-0636-2949497.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/alert-cve-2016-0636-2949497.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/85376",
          "name" : "85376",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1035401",
          "name" : "1035401",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2942-1",
          "name" : "USN-2942-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201606-18",
          "name" : "GLSA-201606-18",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160328-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160328-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u97, 8u73, and 8u74 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to the Hotspot sub-component."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_hpc_node:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_hpc_node:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:icedtea7:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.6.6"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_97:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update73:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update74:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_97:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_73:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_74:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.1,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-03-24T18:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-0686",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00006.html",
          "name" : "openSUSE-SU-2016:1222",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00009.html",
          "name" : "openSUSE-SU-2016:1230",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00012.html",
          "name" : "openSUSE-SU-2016:1235",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00021.html",
          "name" : "SUSE-SU-2016:1248",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00022.html",
          "name" : "SUSE-SU-2016:1250",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00026.html",
          "name" : "openSUSE-SU-2016:1262",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00027.html",
          "name" : "openSUSE-SU-2016:1265",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00039.html",
          "name" : "SUSE-SU-2016:1299",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00040.html",
          "name" : "SUSE-SU-2016:1300",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00042.html",
          "name" : "SUSE-SU-2016:1303",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00058.html",
          "name" : "SUSE-SU-2016:1378",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00059.html",
          "name" : "SUSE-SU-2016:1379",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00061.html",
          "name" : "SUSE-SU-2016:1388",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00067.html",
          "name" : "SUSE-SU-2016:1458",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00002.html",
          "name" : "SUSE-SU-2016:1475",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0650.html",
          "name" : "RHSA-2016:0650",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0651.html",
          "name" : "RHSA-2016:0651",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0675.html",
          "name" : "RHSA-2016:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0676.html",
          "name" : "RHSA-2016:0676",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0677.html",
          "name" : "RHSA-2016:0677",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0678.html",
          "name" : "RHSA-2016:0678",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0679.html",
          "name" : "RHSA-2016:0679",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0701.html",
          "name" : "RHSA-2016:0701",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0702.html",
          "name" : "RHSA-2016:0702",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0708.html",
          "name" : "RHSA-2016:0708",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0716.html",
          "name" : "RHSA-2016:0716",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0723.html",
          "name" : "RHSA-2016:0723",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1039.html",
          "name" : "RHSA-2016:1039",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3558",
          "name" : "DSA-3558",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/86473",
          "name" : "86473",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1035596",
          "name" : "1035596",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2963-1",
          "name" : "USN-2963-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2964-1",
          "name" : "USN-2964-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2972-1",
          "name" : "USN-2972-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1216",
          "name" : "RHSA-2017:1216",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201606-18",
          "name" : "GLSA-201606-18",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 and Java SE Embedded 8u77 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Serialization."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update77:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_77:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false
      }
    },
    "publishedDate" : "2016-04-21T10:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-0687",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00006.html",
          "name" : "openSUSE-SU-2016:1222",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00009.html",
          "name" : "openSUSE-SU-2016:1230",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00012.html",
          "name" : "openSUSE-SU-2016:1235",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00021.html",
          "name" : "SUSE-SU-2016:1248",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00022.html",
          "name" : "SUSE-SU-2016:1250",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00026.html",
          "name" : "openSUSE-SU-2016:1262",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00027.html",
          "name" : "openSUSE-SU-2016:1265",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00039.html",
          "name" : "SUSE-SU-2016:1299",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00040.html",
          "name" : "SUSE-SU-2016:1300",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00042.html",
          "name" : "SUSE-SU-2016:1303",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00058.html",
          "name" : "SUSE-SU-2016:1378",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00059.html",
          "name" : "SUSE-SU-2016:1379",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00061.html",
          "name" : "SUSE-SU-2016:1388",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00067.html",
          "name" : "SUSE-SU-2016:1458",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00002.html",
          "name" : "SUSE-SU-2016:1475",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0650.html",
          "name" : "RHSA-2016:0650",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0651.html",
          "name" : "RHSA-2016:0651",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0675.html",
          "name" : "RHSA-2016:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0676.html",
          "name" : "RHSA-2016:0676",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0677.html",
          "name" : "RHSA-2016:0677",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0678.html",
          "name" : "RHSA-2016:0678",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0679.html",
          "name" : "RHSA-2016:0679",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0701.html",
          "name" : "RHSA-2016:0701",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0702.html",
          "name" : "RHSA-2016:0702",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0708.html",
          "name" : "RHSA-2016:0708",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0716.html",
          "name" : "RHSA-2016:0716",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0723.html",
          "name" : "RHSA-2016:0723",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1039.html",
          "name" : "RHSA-2016:1039",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3558",
          "name" : "DSA-3558",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/86459",
          "name" : "86459",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1035596",
          "name" : "1035596",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2963-1",
          "name" : "USN-2963-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2964-1",
          "name" : "USN-2964-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2972-1",
          "name" : "USN-2972-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1216",
          "name" : "RHSA-2017:1216",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201606-18",
          "name" : "GLSA-201606-18",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 and Java SE Embedded 8u77 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to the Hotspot sub-component."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update77:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_77:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false
      }
    },
    "publishedDate" : "2016-04-21T10:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-0695",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.9",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "icedtea7",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.6.6",
                    "version_affected" : "<="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_hpc_node",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_hpc_node_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.2",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.2",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.7.z",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.2",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00006.html",
          "name" : "openSUSE-SU-2016:1222",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00009.html",
          "name" : "openSUSE-SU-2016:1230",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00012.html",
          "name" : "openSUSE-SU-2016:1235",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00021.html",
          "name" : "SUSE-SU-2016:1248",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00022.html",
          "name" : "SUSE-SU-2016:1250",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00026.html",
          "name" : "openSUSE-SU-2016:1262",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00027.html",
          "name" : "openSUSE-SU-2016:1265",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0650.html",
          "name" : "RHSA-2016:0650",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0651.html",
          "name" : "RHSA-2016:0651",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0675.html",
          "name" : "RHSA-2016:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0676.html",
          "name" : "RHSA-2016:0676",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0677.html",
          "name" : "RHSA-2016:0677",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0678.html",
          "name" : "RHSA-2016:0678",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0679.html",
          "name" : "RHSA-2016:0679",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0723.html",
          "name" : "RHSA-2016:0723",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3558",
          "name" : "DSA-3558",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/86438",
          "name" : "86438",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1035596",
          "name" : "1035596",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2963-1",
          "name" : "USN-2963-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2964-1",
          "name" : "USN-2964-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2972-1",
          "name" : "USN-2972-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10159",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10159",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201606-18",
          "name" : "GLSA-201606-18",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality via vectors related to Security."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update77:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_77:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.9:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:icedtea7:*:rc1:*:*:*:*:*:*",
          "versionEndIncluding" : "2.6.6"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:7:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_hpc_node:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_hpc_node:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_hpc_node_eus:7.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:6.7.z:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.9,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-04-21T10:59Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-10504",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-4013",
          "name" : "DSA-4013",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/100564",
          "name" : "100564",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/commit/397f62c0a838e15d667ef50e27d5d011d2c79c04",
          "name" : "https://github.com/uclouvain/openjpeg/commit/397f62c0a838e15d667ef50e27d5d011d2c79c04",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/835",
          "name" : "https://github.com/uclouvain/openjpeg/issues/835",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www.exploit-db.com/exploits/42600/",
          "name" : "42600",
          "refsource" : "EXPLOIT-DB",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Heap-based buffer overflow vulnerability in the opj_mqc_byteout function in mqc.c in OpenJPEG before 2.2.0 allows remote attackers to cause a denial of service (application crash) via a crafted bmp file."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.1.2"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-30T09:29Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-10505",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-476"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://github.com/uclouvain/openjpeg/issues/776",
          "name" : "https://github.com/uclouvain/openjpeg/issues/776",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/784",
          "name" : "https://github.com/uclouvain/openjpeg/issues/784",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/785",
          "name" : "https://github.com/uclouvain/openjpeg/issues/785",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/792",
          "name" : "https://github.com/uclouvain/openjpeg/issues/792",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "NULL pointer dereference vulnerabilities in the imagetopnm function in convert.c, sycc444_to_rgb function in color.c, color_esycc_to_rgb function in color.c, and sycc422_to_rgb function in color.c in OpenJPEG before 2.2.0 allow remote attackers to cause a denial of service (application crash) via crafted j2k files."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.1.2"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-30T09:29Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-10506",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-369"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/100573",
          "name" : "100573",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/commit/d27ccf01c68a31ad62b33d2dc1ba2bb1eeaafe7b",
          "name" : "https://github.com/uclouvain/openjpeg/commit/d27ccf01c68a31ad62b33d2dc1ba2bb1eeaafe7b",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/731",
          "name" : "https://github.com/uclouvain/openjpeg/issues/731",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/732",
          "name" : "https://github.com/uclouvain/openjpeg/issues/732",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/777",
          "name" : "https://github.com/uclouvain/openjpeg/issues/777",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/778",
          "name" : "https://github.com/uclouvain/openjpeg/issues/778",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/779",
          "name" : "https://github.com/uclouvain/openjpeg/issues/779",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/780",
          "name" : "https://github.com/uclouvain/openjpeg/issues/780",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Division-by-zero vulnerabilities in the functions opj_pi_next_cprl, opj_pi_next_pcrl, and opj_pi_next_rpcl in pi.c in OpenJPEG before 2.2.0 allow remote attackers to cause a denial of service (application crash) via crafted j2k files."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.1.2"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-30T09:29Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-10507",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-190"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/100567",
          "name" : "100567",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/commit/da940424816e11d624362ce080bc026adffa26e8",
          "name" : "https://github.com/uclouvain/openjpeg/commit/da940424816e11d624362ce080bc026adffa26e8",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/833",
          "name" : "https://github.com/uclouvain/openjpeg/issues/833",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Integer overflow vulnerability in the bmp24toimage function in convertbmp.c in OpenJPEG before 2.2.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted bmp file."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.1.2"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-30T09:29Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-1923",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2016/01/18/4",
          "name" : "[oss-security] 20160118 Out-of-bounds Read in the OpenJpeg's opj_j2k_update_image_data and opj_tgt_reset function",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/01/18/7",
          "name" : "[oss-security] 20160118 Re: Out-of-bounds Read in the OpenJpeg's opj_j2k_update_image_data and opj_tgt_reset function",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201612-26",
          "name" : "GLSA-201612-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "name" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Heap-based buffer overflow in the opj_j2k_update_image_data function in OpenJpeg 2016.1.18 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG 2000 image."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:2.1.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-01-27T20:59Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-1924",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.0",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2016/dsa-3665",
          "name" : "DSA-3665",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/01/18/4",
          "name" : "[oss-security] 20160118 Out-of-bounds Read in the OpenJpeg's opj_j2k_update_image_data and opj_tgt_reset function",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/01/18/7",
          "name" : "[oss-security] 20160118 Re: Out-of-bounds Read in the OpenJpeg's opj_j2k_update_image_data and opj_tgt_reset function",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201612-26",
          "name" : "GLSA-201612-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "name" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The opj_tgt_reset function in OpenJpeg 2016.1.18 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG 2000 image."
        }, {
          "lang" : "en",
          "value" : "Per <a href=\"https://github.com/uclouvain/openjpeg/issues/704\">LINK</a> that the version affected is the current latest version available for download (2.1.0)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.1.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-01-27T20:59Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-2381",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "communications_billing_and_revenue_management",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "configuration_manager",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.1.2.0.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "database_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.2.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.2.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18c",
                    "version_affected" : "="
                  }, {
                    "version_value" : "19c",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_manager_base_platform",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2.0.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.3.0.0.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "solaris",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.3",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "perl",
            "product" : {
              "product_data" : [ {
                "product_name" : "perl",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.52",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.61",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.62",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.63",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.64",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.65",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.66",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.67",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.68",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.69",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.70",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.71",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.72",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.73",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.80",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.81",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.82",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.83",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.84",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.85",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.86",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.87",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.88",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.89",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.90",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.91",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.92",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.93",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.94",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.95",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.96",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.97",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.98",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.00",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.01",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.45",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.46",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.47",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.48",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.49",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.13.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.14.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.14.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.15.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.15.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.16.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.16.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.17.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.17.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.17.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.18.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.18.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.12.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.12.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.12.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.14.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.14.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.14.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.14.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.16.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.16.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.16.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.17.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.18.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.20.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.20.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.20.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.20.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.22.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.22.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.22.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.22.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.22.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.8",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "opensuse",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "13.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-20"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-03/msg00112.html",
          "name" : "openSUSE-SU-2016:0881",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://perl5.git.perl.org/perl.git/commitdiff/ae37b791a73a9e78dedb89fb2429d2628cf58076",
          "name" : "http://perl5.git.perl.org/perl.git/commitdiff/ae37b791a73a9e78dedb89fb2429d2628cf58076",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3501",
          "name" : "DSA-3501",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.gossamer-threads.com/lists/perl/porters/326387",
          "name" : "[porters] 20160301  CVE-2016-2381: duplicate environment variables",
          "refsource" : "MLIST",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/83802",
          "name" : "83802",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2916-1",
          "name" : "USN-2916-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05240731",
          "name" : "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05240731",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-75",
          "name" : "GLSA-201701-75",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.oracle.com/security-alerts/cpuapr2020.html",
          "name" : "N/A",
          "refsource" : "N/A",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "name" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Perl might allow context-dependent attackers to bypass the taint protection mechanism in a child process via duplicate environment variables in envp."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:perl:perl:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "5.23.9"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:communications_billing_and_revenue_management:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:configuration_manager:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "12.1.2.0.4"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:configuration_manager:12.1.2.0.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:database_server:11.2.0.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:database_server:12.1.0.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:database_server:12.2.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:database_server:18c:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:database_server:19c:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:enterprise_manager_base_platform:13.2.0.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:enterprise_manager_base_platform:13.3.0.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:timesten_in-memory_database:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "18.1.2.1.0"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:solaris:11.3:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false
      }
    },
    "publishedDate" : "2016-04-08T15:59Z",
    "lastModifiedDate" : "2020-09-10T13:20Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3183",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.0",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-125"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2016/03/16/17",
          "name" : "[oss-security] 20160316 Re: CVE request - OpenJPEG : Out-Of-Bounds Read in sycc422_to_rgb function",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1317821",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1317821",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/commit/15f081c89650dccee4aa4ae66f614c3fdb268767",
          "name" : "https://github.com/uclouvain/openjpeg/commit/15f081c89650dccee4aa4ae66f614c3fdb268767",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/726",
          "name" : "https://github.com/uclouvain/openjpeg/issues/726",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5FFMOZOF2EI6N2CR23EQ5EATWLQKBMHW/",
          "name" : "FEDORA-2016-14d8f9b4ed",
          "refsource" : "FEDORA",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BJM23YERMEC6LCTWBUH7LZURGSLZDFDH/",
          "name" : "FEDORA-2016-8fa7ced365",
          "refsource" : "FEDORA",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DFRD35RIPRCGZA5DKAKHZ62LMP2A5UT7/",
          "name" : "FEDORA-2016-d2ab705e4a",
          "refsource" : "FEDORA",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HPMDEUIMHTLKMHELDL4F4HZ7X4Y34JEB/",
          "name" : "FEDORA-2016-abdc548f46",
          "refsource" : "FEDORA",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201612-26",
          "name" : "GLSA-201612-26",
          "refsource" : "GENTOO",
          "tags" : [ "Patch", "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "name" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The sycc422_t_rgb function in common/color.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted jpeg2000 file."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.1.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "LOCAL",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 5.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 1.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-02-03T16:59Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3422",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00039.html",
          "name" : "SUSE-SU-2016:1299",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00040.html",
          "name" : "SUSE-SU-2016:1300",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00042.html",
          "name" : "SUSE-SU-2016:1303",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00058.html",
          "name" : "SUSE-SU-2016:1378",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00059.html",
          "name" : "SUSE-SU-2016:1379",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00061.html",
          "name" : "SUSE-SU-2016:1388",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00067.html",
          "name" : "SUSE-SU-2016:1458",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00002.html",
          "name" : "SUSE-SU-2016:1475",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0677.html",
          "name" : "RHSA-2016:0677",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0678.html",
          "name" : "RHSA-2016:0678",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0679.html",
          "name" : "RHSA-2016:0679",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0701.html",
          "name" : "RHSA-2016:0701",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0702.html",
          "name" : "RHSA-2016:0702",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0708.html",
          "name" : "RHSA-2016:0708",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0716.html",
          "name" : "RHSA-2016:0716",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1039.html",
          "name" : "RHSA-2016:1039",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/86488",
          "name" : "86488",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1035596",
          "name" : "1035596",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1216",
          "name" : "RHSA-2017:1216",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201606-18",
          "name" : "GLSA-201606-18",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 allows remote attackers to affect availability via vectors related to 2D."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update77:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_77:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 4.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false
      }
    },
    "publishedDate" : "2016-04-21T11:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3425",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.9",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00006.html",
          "name" : "openSUSE-SU-2016:1222",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00009.html",
          "name" : "openSUSE-SU-2016:1230",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00012.html",
          "name" : "openSUSE-SU-2016:1235",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00021.html",
          "name" : "SUSE-SU-2016:1248",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00022.html",
          "name" : "SUSE-SU-2016:1250",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00026.html",
          "name" : "openSUSE-SU-2016:1262",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00027.html",
          "name" : "openSUSE-SU-2016:1265",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0650.html",
          "name" : "RHSA-2016:0650",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0651.html",
          "name" : "RHSA-2016:0651",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0675.html",
          "name" : "RHSA-2016:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0676.html",
          "name" : "RHSA-2016:0676",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0677.html",
          "name" : "RHSA-2016:0677",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0678.html",
          "name" : "RHSA-2016:0678",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0679.html",
          "name" : "RHSA-2016:0679",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0723.html",
          "name" : "RHSA-2016:0723",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3558",
          "name" : "DSA-3558",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/86434",
          "name" : "86434",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1035596",
          "name" : "1035596",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2963-1",
          "name" : "USN-2963-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2964-1",
          "name" : "USN-2964-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2972-1",
          "name" : "USN-2972-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10159",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10159",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201606-18",
          "name" : "GLSA-201606-18",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect availability via vectors related to JAXP."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update77:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_77:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.9:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "LOW",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 4.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false
      }
    },
    "publishedDate" : "2016-04-21T11:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3426",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00006.html",
          "name" : "openSUSE-SU-2016:1222",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00021.html",
          "name" : "SUSE-SU-2016:1248",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00026.html",
          "name" : "openSUSE-SU-2016:1262",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00039.html",
          "name" : "SUSE-SU-2016:1299",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00040.html",
          "name" : "SUSE-SU-2016:1300",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00042.html",
          "name" : "SUSE-SU-2016:1303",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00058.html",
          "name" : "SUSE-SU-2016:1378",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00059.html",
          "name" : "SUSE-SU-2016:1379",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00061.html",
          "name" : "SUSE-SU-2016:1388",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00067.html",
          "name" : "SUSE-SU-2016:1458",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00002.html",
          "name" : "SUSE-SU-2016:1475",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0650.html",
          "name" : "RHSA-2016:0650",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0651.html",
          "name" : "RHSA-2016:0651",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0677.html",
          "name" : "RHSA-2016:0677",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0701.html",
          "name" : "RHSA-2016:0701",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0702.html",
          "name" : "RHSA-2016:0702",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0708.html",
          "name" : "RHSA-2016:0708",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0716.html",
          "name" : "RHSA-2016:0716",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1039.html",
          "name" : "RHSA-2016:1039",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3558",
          "name" : "DSA-3558",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/86449",
          "name" : "86449",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1035596",
          "name" : "1035596",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2963-1",
          "name" : "USN-2963-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1216",
          "name" : "RHSA-2017:1216",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u77 and Java SE Embedded 8u77 allows remote attackers to affect confidentiality via vectors related to JCE."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update77:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_77:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "LOW",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 3.1,
          "baseSeverity" : "LOW"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false
      }
    },
    "publishedDate" : "2016-04-21T11:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3427",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.9",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00006.html",
          "name" : "openSUSE-SU-2016:1222",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00009.html",
          "name" : "openSUSE-SU-2016:1230",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00012.html",
          "name" : "openSUSE-SU-2016:1235",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00021.html",
          "name" : "SUSE-SU-2016:1248",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00022.html",
          "name" : "SUSE-SU-2016:1250",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00026.html",
          "name" : "openSUSE-SU-2016:1262",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00027.html",
          "name" : "openSUSE-SU-2016:1265",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00039.html",
          "name" : "SUSE-SU-2016:1299",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00040.html",
          "name" : "SUSE-SU-2016:1300",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00042.html",
          "name" : "SUSE-SU-2016:1303",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00058.html",
          "name" : "SUSE-SU-2016:1378",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00059.html",
          "name" : "SUSE-SU-2016:1379",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00061.html",
          "name" : "SUSE-SU-2016:1388",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00067.html",
          "name" : "SUSE-SU-2016:1458",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00002.html",
          "name" : "SUSE-SU-2016:1475",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0650.html",
          "name" : "RHSA-2016:0650",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0651.html",
          "name" : "RHSA-2016:0651",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0675.html",
          "name" : "RHSA-2016:0675",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0676.html",
          "name" : "RHSA-2016:0676",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0677.html",
          "name" : "RHSA-2016:0677",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0678.html",
          "name" : "RHSA-2016:0678",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0679.html",
          "name" : "RHSA-2016:0679",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0701.html",
          "name" : "RHSA-2016:0701",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0702.html",
          "name" : "RHSA-2016:0702",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0708.html",
          "name" : "RHSA-2016:0708",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0716.html",
          "name" : "RHSA-2016:0716",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0723.html",
          "name" : "RHSA-2016:0723",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1039.html",
          "name" : "RHSA-2016:1039",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3558",
          "name" : "DSA-3558",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2020/08/31/1",
          "name" : "[oss-security] 20200831 CVE-2016-3427 Apache Cassandra Unspecified vulnerability related to JMX",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/86421",
          "name" : "86421",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1035596",
          "name" : "1035596",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1037331",
          "name" : "1037331",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2963-1",
          "name" : "USN-2963-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2964-1",
          "name" : "USN-2964-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-2972-1",
          "name" : "USN-2972-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1216",
          "name" : "RHSA-2017:1216",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10159",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10159",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/343558d982879bf88ec20dbf707f8c11255f8e219e81d45c4f8d0551@%3Cdev.tomcat.apache.org%3E",
          "name" : "[tomcat-dev] 20190319 svn commit: r1855831 [25/30] - in /tomcat/site/trunk: ./ docs/ xdocs/",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/37220405a377c0182d2afdbc36461c4783b2930fbeae3a17f1333113@%3Cdev.tomcat.apache.org%3E",
          "name" : "[tomcat-dev] 20190413 svn commit: r1857494 [15/20] - in /tomcat/site/trunk: ./ docs/ xdocs/",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/388a323769f1dff84c9ec905455aa73fbcb20338e3c7eb131457f708@%3Cdev.tomcat.apache.org%3E",
          "name" : "[tomcat-dev] 20190325 svn commit: r1856174 [22/29] - in /tomcat/site/trunk: docs/ xdocs/ xdocs/stylesheets/",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/39ae1f0bd5867c15755a6f959b271ade1aea04ccdc3b2e639dcd903b@%3Cdev.tomcat.apache.org%3E",
          "name" : "[tomcat-dev] 20190325 svn commit: r1856174 [21/29] - in /tomcat/site/trunk: docs/ xdocs/ xdocs/stylesheets/",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/3d19773b4cf0377db62d1e9328bf9160bf1819f04f988315086931d7@%3Cdev.tomcat.apache.org%3E",
          "name" : "[tomcat-dev] 20190415 svn commit: r1857582 [17/22] - in /tomcat/site/trunk: docs/ xdocs/stylesheets/",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/6af47120905aa7d8fe12f42e8ff2284fb338ba141d3b77b8c7cb61b3@%3Cdev.tomcat.apache.org%3E",
          "name" : "[tomcat-dev] 20190415 svn commit: r1857582 [19/22] - in /tomcat/site/trunk: docs/ xdocs/stylesheets/",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/845312a10aabbe2c499fca94003881d2c79fc993d85f34c1f5c77424@%3Cdev.tomcat.apache.org%3E",
          "name" : "[tomcat-dev] 20190413 svn commit: r1857494 [16/20] - in /tomcat/site/trunk: ./ docs/ xdocs/",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/88855876c33f2f9c532ffb75bfee570ccf0b17ffa77493745af9a17a@%3Cdev.tomcat.apache.org%3E",
          "name" : "[tomcat-dev] 20190413 svn commit: r1857494 [17/20] - in /tomcat/site/trunk: ./ docs/ xdocs/",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/b5e3f51d28cd5d9b1809f56594f2cf63dcd6a90429e16ea9f83bbedc@%3Cdev.tomcat.apache.org%3E",
          "name" : "[tomcat-dev] 20190325 svn commit: r1856174 [24/29] - in /tomcat/site/trunk: docs/ xdocs/ xdocs/stylesheets/",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/b84ad1258a89de5c9c853c7f2d3ad77e5b8b2930be9e132d5cef6b95@%3Cdev.tomcat.apache.org%3E",
          "name" : "[tomcat-dev] 20190415 svn commit: r1857582 [16/22] - in /tomcat/site/trunk: docs/ xdocs/stylesheets/",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/b8a1bf18155b552dcf9a928ba808cbadad84c236d85eab3033662cfb@%3Cdev.tomcat.apache.org%3E",
          "name" : "[tomcat-dev] 20190319 svn commit: r1855831 [23/30] - in /tomcat/site/trunk: ./ docs/ xdocs/",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r03c597a64de790ba42c167efacfa23300c3d6c9fe589ab87fe02859c@%3Cdev.tomcat.apache.org%3E",
          "name" : "[tomcat-dev] 20200203 svn commit: r1873527 [23/30] - /tomcat/site/trunk/docs/",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r587e50b86c1a96ee301f751d50294072d142fd6dc08a8987ae9f3a9b@%3Cdev.tomcat.apache.org%3E",
          "name" : "[tomcat-dev] 20200213 svn commit: r1873980 [26/34] - /tomcat/site/trunk/docs/",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r5f48b16573a11fdf0b557cc3d1d71423ecde8ee771c29f32334fa948@%3Cdev.cassandra.apache.org%3E",
          "name" : "[cassandra-dev] 20200831 CVE-2016-3427 Apache Cassandra Unspecified vulnerability related to JMX",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r9136ff5b13e4f1941360b5a309efee2c114a14855578c3a2cbe5d19c@%3Cdev.tomcat.apache.org%3E",
          "name" : "[tomcat-dev] 20200213 svn commit: r1873980 [27/34] - /tomcat/site/trunk/docs/",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/rc3abf40b06c511d5693baf707d6444bf7745e6a1e343e6f530a12258@%3Cuser.cassandra.apache.org%3E",
          "name" : "[cassandra-user] 20200831 CVE-2016-3427 Apache Cassandra Unspecified vulnerability related to JMX",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201606-18",
          "name" : "GLSA-201606-18",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JMX."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update77:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_77:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.9:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.0,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false
      }
    },
    "publishedDate" : "2016-04-21T11:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3443",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00039.html",
          "name" : "SUSE-SU-2016:1299",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00040.html",
          "name" : "SUSE-SU-2016:1300",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00042.html",
          "name" : "SUSE-SU-2016:1303",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00058.html",
          "name" : "SUSE-SU-2016:1378",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00059.html",
          "name" : "SUSE-SU-2016:1379",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00061.html",
          "name" : "SUSE-SU-2016:1388",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00067.html",
          "name" : "SUSE-SU-2016:1458",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00002.html",
          "name" : "SUSE-SU-2016:1475",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0677.html",
          "name" : "RHSA-2016:0677",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0678.html",
          "name" : "RHSA-2016:0678",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0679.html",
          "name" : "RHSA-2016:0679",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0701.html",
          "name" : "RHSA-2016:0701",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0702.html",
          "name" : "RHSA-2016:0702",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0708.html",
          "name" : "RHSA-2016:0708",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0716.html",
          "name" : "RHSA-2016:0716",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1039.html",
          "name" : "RHSA-2016:1039",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/86482",
          "name" : "86482",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1035596",
          "name" : "1035596",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.zerodayinitiative.com/advisories/ZDI-16-376",
          "name" : "http://www.zerodayinitiative.com/advisories/ZDI-16-376",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1216",
          "name" : "RHSA-2017:1216",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201606-18",
          "name" : "GLSA-201606-18",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to 2D.  NOTE: the previous information is from the April 2016 CPU. Oracle has not commented on third-party claims that this issue allows remote attackers to obtain sensitive information via crafted font data, which triggers an out-of-bounds read."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update77:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_77:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false
      }
    },
    "publishedDate" : "2016-04-21T11:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3449",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00039.html",
          "name" : "SUSE-SU-2016:1299",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00040.html",
          "name" : "SUSE-SU-2016:1300",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00042.html",
          "name" : "SUSE-SU-2016:1303",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00058.html",
          "name" : "SUSE-SU-2016:1378",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00059.html",
          "name" : "SUSE-SU-2016:1379",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00061.html",
          "name" : "SUSE-SU-2016:1388",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00067.html",
          "name" : "SUSE-SU-2016:1458",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00002.html",
          "name" : "SUSE-SU-2016:1475",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0677.html",
          "name" : "RHSA-2016:0677",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0678.html",
          "name" : "RHSA-2016:0678",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0679.html",
          "name" : "RHSA-2016:0679",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0701.html",
          "name" : "RHSA-2016:0701",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0702.html",
          "name" : "RHSA-2016:0702",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0708.html",
          "name" : "RHSA-2016:0708",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-0716.html",
          "name" : "RHSA-2016:0716",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1039.html",
          "name" : "RHSA-2016:1039",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/86485",
          "name" : "86485",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1035596",
          "name" : "1035596",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1430",
          "name" : "RHSA-2016:1430",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1216",
          "name" : "RHSA-2017:1216",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201606-18",
          "name" : "GLSA-201606-18",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160420-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Deployment."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update77:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_113:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_99:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_77:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.6
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 4.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false
      }
    },
    "publishedDate" : "2016-04-21T11:00Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3458",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00011.html",
          "name" : "SUSE-SU-2016:1997",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00024.html",
          "name" : "SUSE-SU-2016:2012",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00032.html",
          "name" : "openSUSE-SU-2016:2050",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00033.html",
          "name" : "openSUSE-SU-2016:2051",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00034.html",
          "name" : "openSUSE-SU-2016:2052",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00035.html",
          "name" : "openSUSE-SU-2016:2058",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-08/msg00028.html",
          "name" : "openSUSE-SU-2016:1979",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1504.html",
          "name" : "RHSA-2016:1504",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1776.html",
          "name" : "RHSA-2016:1776",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3641",
          "name" : "DSA-3641",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91787",
          "name" : "91787",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91945",
          "name" : "91945",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036365",
          "name" : "1036365",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3043-1",
          "name" : "USN-3043-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3062-1",
          "name" : "USN-3062-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3077-1",
          "name" : "USN-3077-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1458",
          "name" : "RHSA-2016:1458",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1475",
          "name" : "RHSA-2016:1475",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1476",
          "name" : "RHSA-2016:1476",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1477",
          "name" : "RHSA-2016:1477",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; and Java SE Embedded 8u91 allows remote attackers to affect integrity via vectors related to CORBA."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_115:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_115:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:7:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-07-21T10:12Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3485",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00011.html",
          "name" : "SUSE-SU-2016:1997",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00024.html",
          "name" : "SUSE-SU-2016:2012",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00032.html",
          "name" : "openSUSE-SU-2016:2050",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00033.html",
          "name" : "openSUSE-SU-2016:2051",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00034.html",
          "name" : "openSUSE-SU-2016:2052",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00035.html",
          "name" : "openSUSE-SU-2016:2058",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-09/msg00005.html",
          "name" : "SUSE-SU-2016:2261",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-09/msg00006.html",
          "name" : "SUSE-SU-2016:2286",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-08/msg00028.html",
          "name" : "openSUSE-SU-2016:1979",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91787",
          "name" : "91787",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036365",
          "name" : "1036365",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10166",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10166",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows local users to affect integrity via vectors related to Networking."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_115:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_115:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.10:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N",
          "attackVector" : "LOCAL",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.9,
          "baseSeverity" : "LOW"
        },
        "exploitabilityScore" : 1.4,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.1
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.9,
        "impactScore" : 2.9,
        "acInsufInfo" : true,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-07-21T10:12Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3498",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00011.html",
          "name" : "SUSE-SU-2016:1997",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00024.html",
          "name" : "SUSE-SU-2016:2012",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00032.html",
          "name" : "openSUSE-SU-2016:2050",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00033.html",
          "name" : "openSUSE-SU-2016:2051",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00034.html",
          "name" : "openSUSE-SU-2016:2052",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00035.html",
          "name" : "openSUSE-SU-2016:2058",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-08/msg00028.html",
          "name" : "openSUSE-SU-2016:1979",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91787",
          "name" : "91787",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91956",
          "name" : "91956",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036365",
          "name" : "1036365",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1475",
          "name" : "RHSA-2016:1475",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1476",
          "name" : "RHSA-2016:1476",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows remote attackers to affect availability via vectors related to JavaFX."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_92:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-07-21T10:12Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3500",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.10",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00011.html",
          "name" : "SUSE-SU-2016:1997",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00024.html",
          "name" : "SUSE-SU-2016:2012",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00032.html",
          "name" : "openSUSE-SU-2016:2050",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00033.html",
          "name" : "openSUSE-SU-2016:2051",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00034.html",
          "name" : "openSUSE-SU-2016:2052",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00035.html",
          "name" : "openSUSE-SU-2016:2058",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-08/msg00028.html",
          "name" : "openSUSE-SU-2016:1979",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1504.html",
          "name" : "RHSA-2016:1504",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1776.html",
          "name" : "RHSA-2016:1776",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3641",
          "name" : "DSA-3641",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91787",
          "name" : "91787",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036365",
          "name" : "1036365",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3043-1",
          "name" : "USN-3043-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3062-1",
          "name" : "USN-3062-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3077-1",
          "name" : "USN-3077-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1458",
          "name" : "RHSA-2016:1458",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1475",
          "name" : "RHSA-2016:1475",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1476",
          "name" : "RHSA-2016:1476",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1477",
          "name" : "RHSA-2016:1477",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10166",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10166",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3508."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:7:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_115:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_115:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.10:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-07-21T10:12Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3503",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00011.html",
          "name" : "SUSE-SU-2016:1997",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00024.html",
          "name" : "SUSE-SU-2016:2012",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00032.html",
          "name" : "openSUSE-SU-2016:2050",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00033.html",
          "name" : "openSUSE-SU-2016:2051",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00034.html",
          "name" : "openSUSE-SU-2016:2052",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00035.html",
          "name" : "openSUSE-SU-2016:2058",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-08/msg00028.html",
          "name" : "openSUSE-SU-2016:1979",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91787",
          "name" : "91787",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91996",
          "name" : "91996",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036365",
          "name" : "1036365",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1475",
          "name" : "RHSA-2016:1475",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1476",
          "name" : "RHSA-2016:1476",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1477",
          "name" : "RHSA-2016:1477",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_115:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_115:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_92:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "LOCAL",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.7,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.0,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.4
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.4,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-07-21T10:12Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3508",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.10",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00011.html",
          "name" : "SUSE-SU-2016:1997",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00024.html",
          "name" : "SUSE-SU-2016:2012",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00032.html",
          "name" : "openSUSE-SU-2016:2050",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00033.html",
          "name" : "openSUSE-SU-2016:2051",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00034.html",
          "name" : "openSUSE-SU-2016:2052",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00035.html",
          "name" : "openSUSE-SU-2016:2058",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-08/msg00028.html",
          "name" : "openSUSE-SU-2016:1979",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1504.html",
          "name" : "RHSA-2016:1504",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1776.html",
          "name" : "RHSA-2016:1776",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3641",
          "name" : "DSA-3641",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91787",
          "name" : "91787",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91972",
          "name" : "91972",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036365",
          "name" : "1036365",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3043-1",
          "name" : "USN-3043-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3062-1",
          "name" : "USN-3062-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3077-1",
          "name" : "USN-3077-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1458",
          "name" : "RHSA-2016:1458",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1475",
          "name" : "RHSA-2016:1475",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1476",
          "name" : "RHSA-2016:1476",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1477",
          "name" : "RHSA-2016:1477",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10166",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10166",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3500."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_115:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_115:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:7:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-07-21T10:13Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3511",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00011.html",
          "name" : "SUSE-SU-2016:1997",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00024.html",
          "name" : "SUSE-SU-2016:2012",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00032.html",
          "name" : "openSUSE-SU-2016:2050",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00033.html",
          "name" : "openSUSE-SU-2016:2051",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00034.html",
          "name" : "openSUSE-SU-2016:2052",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00035.html",
          "name" : "openSUSE-SU-2016:2058",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-09/msg00005.html",
          "name" : "SUSE-SU-2016:2261",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-09/msg00006.html",
          "name" : "SUSE-SU-2016:2286",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-08/msg00028.html",
          "name" : "openSUSE-SU-2016:1979",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1587.html",
          "name" : "RHSA-2016:1587",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1588.html",
          "name" : "RHSA-2016:1588",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1589.html",
          "name" : "RHSA-2016:1589",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91787",
          "name" : "91787",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91990",
          "name" : "91990",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036365",
          "name" : "1036365",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1475",
          "name" : "RHSA-2016:1475",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1476",
          "name" : "RHSA-2016:1476",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1216",
          "name" : "RHSA-2017:1216",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Deployment."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_92:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "LOCAL",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.7,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.0,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 6.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.4,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-07-21T10:13Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3550",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00011.html",
          "name" : "SUSE-SU-2016:1997",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00024.html",
          "name" : "SUSE-SU-2016:2012",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00032.html",
          "name" : "openSUSE-SU-2016:2050",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00033.html",
          "name" : "openSUSE-SU-2016:2051",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00034.html",
          "name" : "openSUSE-SU-2016:2052",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00035.html",
          "name" : "openSUSE-SU-2016:2058",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-08/msg00028.html",
          "name" : "openSUSE-SU-2016:1979",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1504.html",
          "name" : "RHSA-2016:1504",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1776.html",
          "name" : "RHSA-2016:1776",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3641",
          "name" : "DSA-3641",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91787",
          "name" : "91787",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91951",
          "name" : "91951",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036365",
          "name" : "1036365",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3043-1",
          "name" : "USN-3043-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3062-1",
          "name" : "USN-3062-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3077-1",
          "name" : "USN-3077-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1458",
          "name" : "RHSA-2016:1458",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1475",
          "name" : "RHSA-2016:1475",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1476",
          "name" : "RHSA-2016:1476",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1477",
          "name" : "RHSA-2016:1477",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality via vectors related to Hotspot."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:7:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_115:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_115:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_92:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "LOW",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-07-21T10:13Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3552",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00024.html",
          "name" : "SUSE-SU-2016:2012",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00033.html",
          "name" : "openSUSE-SU-2016:2051",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-08/msg00028.html",
          "name" : "openSUSE-SU-2016:1979",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91787",
          "name" : "91787",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/92000",
          "name" : "92000",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036365",
          "name" : "1036365",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1475",
          "name" : "RHSA-2016:1475",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_92:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",
          "attackVector" : "LOCAL",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.1,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.4,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:H/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 6.2
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 1.9,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-07-21T10:13Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3587",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00024.html",
          "name" : "SUSE-SU-2016:2012",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00033.html",
          "name" : "openSUSE-SU-2016:2051",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-08/msg00028.html",
          "name" : "openSUSE-SU-2016:1979",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91787",
          "name" : "91787",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91904",
          "name" : "91904",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036365",
          "name" : "1036365",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3043-1",
          "name" : "USN-3043-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1458",
          "name" : "RHSA-2016:1458",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1475",
          "name" : "RHSA-2016:1475",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:7:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_92:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-07-21T10:14Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3598",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00011.html",
          "name" : "SUSE-SU-2016:1997",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00024.html",
          "name" : "SUSE-SU-2016:2012",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00032.html",
          "name" : "openSUSE-SU-2016:2050",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00033.html",
          "name" : "openSUSE-SU-2016:2051",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00034.html",
          "name" : "openSUSE-SU-2016:2052",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00035.html",
          "name" : "openSUSE-SU-2016:2058",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-09/msg00005.html",
          "name" : "SUSE-SU-2016:2261",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-09/msg00006.html",
          "name" : "SUSE-SU-2016:2286",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-08/msg00028.html",
          "name" : "openSUSE-SU-2016:1979",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1504.html",
          "name" : "RHSA-2016:1504",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1587.html",
          "name" : "RHSA-2016:1587",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1588.html",
          "name" : "RHSA-2016:1588",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1589.html",
          "name" : "RHSA-2016:1589",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91787",
          "name" : "91787",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91918",
          "name" : "91918",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036365",
          "name" : "1036365",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3043-1",
          "name" : "USN-3043-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3062-1",
          "name" : "USN-3062-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1458",
          "name" : "RHSA-2016:1458",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1475",
          "name" : "RHSA-2016:1475",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1216",
          "name" : "RHSA-2017:1216",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3610."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_92:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:7:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-07-21T10:14Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3606",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00011.html",
          "name" : "SUSE-SU-2016:1997",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00024.html",
          "name" : "SUSE-SU-2016:2012",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00032.html",
          "name" : "openSUSE-SU-2016:2050",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00033.html",
          "name" : "openSUSE-SU-2016:2051",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00034.html",
          "name" : "openSUSE-SU-2016:2052",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00035.html",
          "name" : "openSUSE-SU-2016:2058",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-08/msg00028.html",
          "name" : "openSUSE-SU-2016:1979",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1504.html",
          "name" : "RHSA-2016:1504",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1776.html",
          "name" : "RHSA-2016:1776",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3641",
          "name" : "DSA-3641",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91787",
          "name" : "91787",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91912",
          "name" : "91912",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036365",
          "name" : "1036365",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3043-1",
          "name" : "USN-3043-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3062-1",
          "name" : "USN-3062-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3077-1",
          "name" : "USN-3077-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1458",
          "name" : "RHSA-2016:1458",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1475",
          "name" : "RHSA-2016:1475",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1476",
          "name" : "RHSA-2016:1476",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:linux:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:linux:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:linux:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_92:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-07-21T10:14Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-3610",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00011.html",
          "name" : "SUSE-SU-2016:1997",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00024.html",
          "name" : "SUSE-SU-2016:2012",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00032.html",
          "name" : "openSUSE-SU-2016:2050",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00033.html",
          "name" : "openSUSE-SU-2016:2051",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00034.html",
          "name" : "openSUSE-SU-2016:2052",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00035.html",
          "name" : "openSUSE-SU-2016:2058",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-08/msg00028.html",
          "name" : "openSUSE-SU-2016:1979",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-1504.html",
          "name" : "RHSA-2016:1504",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91787",
          "name" : "91787",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91930",
          "name" : "91930",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036365",
          "name" : "1036365",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3043-1",
          "name" : "USN-3043-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3062-1",
          "name" : "USN-3062-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1458",
          "name" : "RHSA-2016:1458",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2016:1475",
          "name" : "RHSA-2016:1475",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201610-08",
          "name" : "GLSA-201610-08",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20160721-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3598."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update92:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_91:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_92:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:5.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:linux:7:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-07-21T10:14Z",
    "lastModifiedDate" : "2020-09-08T12:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-4483",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "xmlsoft",
            "product" : {
              "product_data" : [ {
                "product_name" : "libxml2",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.3",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "solaris",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.3",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-502"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2957.html",
          "name" : "RHSA-2016:2957",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3593",
          "name" : "DSA-3593",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/05/03/8",
          "name" : "[oss-security] 20160503 CVE request: out-of-bounds read parsing an XML in libxml2 using recover mode",
          "refsource" : "MLIST",
          "tags" : [ "Exploit", "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/05/04/7",
          "name" : "[oss-security] 20160504 Re: CVE request: out-of-bounds read parsing an XML in libxml2 using recover mode",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/06/07/4",
          "name" : "[oss-security] 20160607 Please reject duplicate CVE for libxml2",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/06/07/5",
          "name" : "[oss-security] 20160607 Re: Please reject duplicate CVE for libxml2",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/90013",
          "name" : "90013",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036348",
          "name" : "1036348",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://git.gnome.org/browse/libxml2/commit/?id=c97750d11bb8b6f3303e7131fe526a61ac65bcfd",
          "name" : "https://git.gnome.org/browse/libxml2/commit/?id=c97750d11bb8b6f3303e7131fe526a61ac65bcfd",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-37",
          "name" : "GLSA-201701-37",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.tenable.com/security/tns-2016-18",
          "name" : "https://www.tenable.com/security/tns-2016-18",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The xmlBufAttrSerializeTxtContent function in xmlsave.c in libxml2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and application crash) via a non-UTF-8 attribute value, related to serialization.  NOTE: this vulnerability may be a duplicate of CVE-2016-3627."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:xmlsoft:libxml2:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "2.9.4"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:solaris:11.3:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-04-11T16:59Z",
    "lastModifiedDate" : "2020-09-11T15:21Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-4796",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.0",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "fedoraproject",
            "product" : {
              "product_data" : [ {
                "product_name" : "fedora",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "24",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2016/05/13/2",
          "name" : "[oss-security] 20160512 Re: CVE Request - OpenJPEG: Security Fixes",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1335482",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1335482",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/commit/162f6199c0cd3ec1c6c6dc65e41b2faab92b2d91",
          "name" : "https://github.com/uclouvain/openjpeg/commit/162f6199c0cd3ec1c6c6dc65e41b2faab92b2d91",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/774",
          "name" : "https://github.com/uclouvain/openjpeg/issues/774",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5FFMOZOF2EI6N2CR23EQ5EATWLQKBMHW/",
          "name" : "FEDORA-2016-14d8f9b4ed",
          "refsource" : "FEDORA",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BJM23YERMEC6LCTWBUH7LZURGSLZDFDH/",
          "name" : "FEDORA-2016-8fa7ced365",
          "refsource" : "FEDORA",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DFRD35RIPRCGZA5DKAKHZ62LMP2A5UT7/",
          "name" : "FEDORA-2016-d2ab705e4a",
          "refsource" : "FEDORA",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HPMDEUIMHTLKMHELDL4F4HZ7X4Y34JEB/",
          "name" : "FEDORA-2016-abdc548f46",
          "refsource" : "FEDORA",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "name" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Heap-based buffer overflow in the color_cmyk_to_rgb in common/color.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of service (crash) via a crafted .j2k file."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.1.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:23:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:24:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "LOCAL",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 5.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 1.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-02-03T16:59Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-4797",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.0",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "fedoraproject",
            "product" : {
              "product_data" : [ {
                "product_name" : "fedora",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "24",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-369"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2016/05/13/2",
          "name" : "[oss-security] 20160512 Re: CVE Request - OpenJPEG: Security Fixes",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1335483",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1335483",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/commit/8f9cc62b3f9a1da9712329ddcedb9750d585505c",
          "name" : "https://github.com/uclouvain/openjpeg/commit/8f9cc62b3f9a1da9712329ddcedb9750d585505c",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/733",
          "name" : "https://github.com/uclouvain/openjpeg/issues/733",
          "refsource" : "MISC",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5FFMOZOF2EI6N2CR23EQ5EATWLQKBMHW/",
          "name" : "FEDORA-2016-14d8f9b4ed",
          "refsource" : "FEDORA",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BJM23YERMEC6LCTWBUH7LZURGSLZDFDH/",
          "name" : "FEDORA-2016-8fa7ced365",
          "refsource" : "FEDORA",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DFRD35RIPRCGZA5DKAKHZ62LMP2A5UT7/",
          "name" : "FEDORA-2016-d2ab705e4a",
          "refsource" : "FEDORA",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HPMDEUIMHTLKMHELDL4F4HZ7X4Y34JEB/",
          "name" : "FEDORA-2016-abdc548f46",
          "refsource" : "FEDORA",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "name" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Divide-by-zero vulnerability in the opj_tcd_init_tile function in tcd.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of service (application crash) via a crafted jp2 file. NOTE: this issue exists because of an incorrect fix for CVE-2014-7947."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.1.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:23:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:24:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "LOCAL",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 5.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 1.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-02-03T16:59Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-5011",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "ibm",
            "product" : {
              "product_data" : [ {
                "product_name" : "power_hardware_management_console",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.8.6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "powerkvm",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "kernel",
            "product" : {
              "product_data" : [ {
                "product_name" : "util-linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.28",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2605.html",
          "name" : "RHSA-2016:2605",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/07/11/2",
          "name" : "[oss-security] 20160711 CVE-2016-5011: util-linux: Extended partition loop in MBR partition table leads to DoS",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91683",
          "name" : "91683",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036272",
          "name" : "1036272",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=isg3T1024543",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=isg3T1024543",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www-01.ibm.com/support/docview.wss?uid=nas8N1021801",
          "name" : "http://www-01.ibm.com/support/docview.wss?uid=nas8N1021801",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://git.kernel.org/pub/scm/utils/util-linux/util-linux.git/commit/?id=7164a1c3",
          "name" : "https://git.kernel.org/pub/scm/utils/util-linux/util-linux.git/commit/?id=7164a1c3",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The parse_dos_extended function in partitions/dos.c in the libblkid library in util-linux allows physically proximate attackers to cause a denial of service (memory consumption) via a crafted MSDOS partition table with an extended partition boot record at zero offset."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:kernel:util-linux:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.28"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:powerkvm:2.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:powerkvm:3.1:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ibm:power_hardware_management_console:8.8.6.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:N/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 4.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.9,
        "impactScore" : 6.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-04-11T15:59Z",
    "lastModifiedDate" : "2020-09-11T15:22Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-5542",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2079.html",
          "name" : "RHSA-2016:2079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2088.html",
          "name" : "RHSA-2016:2088",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2089.html",
          "name" : "RHSA-2016:2089",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2090.html",
          "name" : "RHSA-2016:2090",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2136.html",
          "name" : "RHSA-2016:2136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2137.html",
          "name" : "RHSA-2016:2137",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2138.html",
          "name" : "RHSA-2016:2138",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2658.html",
          "name" : "RHSA-2016:2658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2659.html",
          "name" : "RHSA-2016:2659",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2017-0061.html",
          "name" : "RHSA-2017:0061",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3707",
          "name" : "DSA-3707",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/93643",
          "name" : "93643",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1037040",
          "name" : "1037040",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3130-1",
          "name" : "USN-3130-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3154-1",
          "name" : "USN-3154-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1216",
          "name" : "RHSA-2017:1216",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201611-04",
          "name" : "GLSA-201611-04",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20161019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20161019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect integrity via vectors related to Libraries."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update111:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update102:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_111:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_102:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 3.1,
          "baseSeverity" : "LOW"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-10-25T14:30Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-5554",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2079.html",
          "name" : "RHSA-2016:2079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2088.html",
          "name" : "RHSA-2016:2088",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2089.html",
          "name" : "RHSA-2016:2089",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2090.html",
          "name" : "RHSA-2016:2090",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2136.html",
          "name" : "RHSA-2016:2136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2137.html",
          "name" : "RHSA-2016:2137",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2138.html",
          "name" : "RHSA-2016:2138",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2658.html",
          "name" : "RHSA-2016:2658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2659.html",
          "name" : "RHSA-2016:2659",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2017-0061.html",
          "name" : "RHSA-2017:0061",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3707",
          "name" : "DSA-3707",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/93637",
          "name" : "93637",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1037040",
          "name" : "1037040",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3130-1",
          "name" : "USN-3130-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3154-1",
          "name" : "USN-3154-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1216",
          "name" : "RHSA-2017:1216",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201611-04",
          "name" : "GLSA-201611-04",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20161019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20161019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect integrity via vectors related to JMX."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update111:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update102:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_111:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_102:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-10-25T14:30Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-5556",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-284"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2088.html",
          "name" : "RHSA-2016:2088",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2089.html",
          "name" : "RHSA-2016:2089",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2090.html",
          "name" : "RHSA-2016:2090",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2136.html",
          "name" : "RHSA-2016:2136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2137.html",
          "name" : "RHSA-2016:2137",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2138.html",
          "name" : "RHSA-2016:2138",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2659.html",
          "name" : "RHSA-2016:2659",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/93618",
          "name" : "93618",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1037040",
          "name" : "1037040",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1216",
          "name" : "RHSA-2017:1216",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r1b103833cb5bc8466e24ff0ecc5e75b45a705334ab6a444e64e840a0@%3Cissues.bookkeeper.apache.org%3E",
          "name" : "[bookkeeper-issues] 20200729 [GitHub] [bookkeeper] padma81 opened a new issue #2387: Security vulnerabilities in the apache/bookkeeper-4.9.2 image",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201611-04",
          "name" : "GLSA-201611-04",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20161019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20161019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u121, 7u111, and 8u102 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to 2D."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update111:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update102:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_111:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_102:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-10-25T14:30Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-5568",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-284"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/93621",
          "name" : "93621",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1037040",
          "name" : "1037040",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r1b103833cb5bc8466e24ff0ecc5e75b45a705334ab6a444e64e840a0@%3Cissues.bookkeeper.apache.org%3E",
          "name" : "[bookkeeper-issues] 20200729 [GitHub] [bookkeeper] padma81 opened a new issue #2387: Security vulnerabilities in the apache/bookkeeper-4.9.2 image",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201611-04",
          "name" : "GLSA-201611-04",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20161019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20161019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u121, 7u111, and 8u102 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update111:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update102:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_111:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_102:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-10-25T14:30Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-5573",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-264"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2079.html",
          "name" : "RHSA-2016:2079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2088.html",
          "name" : "RHSA-2016:2088",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2089.html",
          "name" : "RHSA-2016:2089",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2090.html",
          "name" : "RHSA-2016:2090",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2136.html",
          "name" : "RHSA-2016:2136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2137.html",
          "name" : "RHSA-2016:2137",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2138.html",
          "name" : "RHSA-2016:2138",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2658.html",
          "name" : "RHSA-2016:2658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2659.html",
          "name" : "RHSA-2016:2659",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2017-0061.html",
          "name" : "RHSA-2017:0061",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3707",
          "name" : "DSA-3707",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/93628",
          "name" : "93628",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1037040",
          "name" : "1037040",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3130-1",
          "name" : "USN-3130-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3154-1",
          "name" : "USN-3154-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1216",
          "name" : "RHSA-2017:1216",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201611-04",
          "name" : "GLSA-201611-04",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20161019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20161019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5582."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update111:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update102:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_111:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_102:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-10-25T14:30Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-5582",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-284"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2079.html",
          "name" : "RHSA-2016:2079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2088.html",
          "name" : "RHSA-2016:2088",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2089.html",
          "name" : "RHSA-2016:2089",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2090.html",
          "name" : "RHSA-2016:2090",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2658.html",
          "name" : "RHSA-2016:2658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2017-0061.html",
          "name" : "RHSA-2017:0061",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3707",
          "name" : "DSA-3707",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/93623",
          "name" : "93623",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1037040",
          "name" : "1037040",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3130-1",
          "name" : "USN-3130-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3154-1",
          "name" : "USN-3154-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r1b103833cb5bc8466e24ff0ecc5e75b45a705334ab6a444e64e840a0@%3Cissues.bookkeeper.apache.org%3E",
          "name" : "[bookkeeper-issues] 20200729 [GitHub] [bookkeeper] padma81 opened a new issue #2387: Security vulnerabilities in the apache/bookkeeper-4.9.2 image",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201611-04",
          "name" : "GLSA-201611-04",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20161019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20161019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5573."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update111:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update102:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_111:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_102:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-10-25T14:30Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-5597",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-200"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2079.html",
          "name" : "RHSA-2016:2079",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2088.html",
          "name" : "RHSA-2016:2088",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2089.html",
          "name" : "RHSA-2016:2089",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2090.html",
          "name" : "RHSA-2016:2090",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2136.html",
          "name" : "RHSA-2016:2136",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2137.html",
          "name" : "RHSA-2016:2137",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2138.html",
          "name" : "RHSA-2016:2138",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2658.html",
          "name" : "RHSA-2016:2658",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2016-2659.html",
          "name" : "RHSA-2016:2659",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://rhn.redhat.com/errata/RHSA-2017-0061.html",
          "name" : "RHSA-2017:0061",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3707",
          "name" : "DSA-3707",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/93636",
          "name" : "93636",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1037040",
          "name" : "1037040",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3130-1",
          "name" : "USN-3130-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "http://www.ubuntu.com/usn/USN-3154-1",
          "name" : "USN-3154-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1216",
          "name" : "RHSA-2017:1216",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201611-04",
          "name" : "GLSA-201611-04",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-43",
          "name" : "GLSA-201701-43",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20161019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20161019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality via vectors related to Networking."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update111:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update102:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_111:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_101:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_102:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.9,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-10-25T14:31Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-6185",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "perl",
            "product" : {
              "product_data" : [ {
                "product_name" : "perl",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.52",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.61",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.62",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.63",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.64",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.65",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.66",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.67",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.68",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.69",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.70",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.71",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.72",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.73",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.80",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.81",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.82",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.83",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.84",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.85",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.86",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.87",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.88",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.89",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.90",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.91",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.92",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.93",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.94",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.95",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.96",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.97",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.98",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.99",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.00",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.01",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.45",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.46",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.47",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.48",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.49",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.13.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.14.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.14.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.15.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.15.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.16.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.16.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.17.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.17.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.17.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.18.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.18.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.12.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.12.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.12.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.14.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.14.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.14.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.14.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.16.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.16.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.16.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.17.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.18.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.20.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.20.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.20.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.20.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.21.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.22.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.22.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.22.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.22.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.22.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.23.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.24.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.24.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.24.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.24.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.24.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.25.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.25.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.25.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "fedoraproject",
            "product" : {
              "product_data" : [ {
                "product_name" : "fedora",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "24",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "solaris",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.3",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://perl5.git.perl.org/perl.git/commitdiff/08e3451d7",
          "name" : "http://perl5.git.perl.org/perl.git/commitdiff/08e3451d7",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Vendor Advisory" ]
        }, {
          "url" : "http://www.debian.org/security/2016/dsa-3628",
          "name" : "DSA-3628",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/07/07/1",
          "name" : "[oss-security] 20160707 CVE Request: perl: XSLoader: could load shared library from incorrect location",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/07/08/5",
          "name" : "[oss-security] 20160708 Re: CVE Request: perl: XSLoader: could load shared library from incorrect location",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.html",
          "name" : "http://www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/91685",
          "name" : "91685",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1036260",
          "name" : "1036260",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5RFDMASVZLFZYBB2GNTZXU6I76E4NA4V/",
          "name" : "FEDORA-2016-742bde2be7",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ITYZJXQH24X2F2LAOQEQAC5KXLYJTJ76/",
          "name" : "FEDORA-2016-485dff6060",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PRIPTDA6XINBVEJXI2NGLKVEINBREHTN/",
          "name" : "FEDORA-2016-eb2592245b",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://rt.cpan.org/Public/Bug/Display.html?id=115808",
          "name" : "https://rt.cpan.org/Public/Bug/Display.html?id=115808",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-75",
          "name" : "GLSA-201701-75",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3625-1/",
          "name" : "USN-3625-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3625-2/",
          "name" : "USN-3625-2",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The XSLoader::load method in XSLoader in Perl does not properly locate .so files when called in a string eval, which might allow local users to execute arbitrary code via a Trojan horse library under the current working directory."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:perl:perl:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "5.25.3"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:23:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:24:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:solaris:10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:solaris:11.3:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.6
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-08-02T14:59Z",
    "lastModifiedDate" : "2020-09-10T13:20Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-6829",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "barclamp-trove_project",
            "product" : {
              "product_data" : [ {
                "product_name" : "barclamp-trove",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "crowbar-openstack_project",
            "product" : {
              "product_data" : [ {
                "product_name" : "crowbar-openstack",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-798"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2016/08/16/1",
          "name" : "[oss-security] 20160816 CVE Request: Default password in openstack / crowbar trove",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/08/18/9",
          "name" : "[oss-security] 20160817 Re: CVE Request: Default password in openstack / crowbar trove",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/92476",
          "name" : "92476",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://github.com/crowbar/barclamp-trove/commit/932298f250365fed6963700870e52db3a7a32daa",
          "name" : "https://github.com/crowbar/barclamp-trove/commit/932298f250365fed6963700870e52db3a7a32daa",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch" ]
        }, {
          "url" : "https://github.com/crowbar/crowbar-openstack/commit/208230bdfbcb19d062149d083b1a66b429516a69",
          "name" : "https://github.com/crowbar/crowbar-openstack/commit/208230bdfbcb19d062149d083b1a66b429516a69",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch" ]
        }, {
          "url" : "https://www.suse.com/security/cve//CVE-2016-6829.html",
          "name" : "https://www.suse.com/security/cve//CVE-2016-6829.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The trove service user in (1) Openstack deployment (aka crowbar-openstack) and (2) Trove Barclamp (aka barclamp-trove and crowbar-barclamp-trove) in the Crowbar Framework has a default password, which makes it easier for remote attackers to obtain access via unspecified vectors."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:barclamp-trove_project:barclamp-trove:-:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:crowbar-openstack_project:crowbar-openstack:-:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-12-09T20:59Z",
    "lastModifiedDate" : "2020-09-09T15:13Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-7142",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "inspircd",
            "product" : {
              "product_data" : [ {
                "product_name" : "inspircd",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.0.22",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-264"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2016/dsa-3662",
          "name" : "DSA-3662",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.inspircd.org/2016/09/03/v2023-released.html",
          "name" : "http://www.inspircd.org/2016/09/03/v2023-released.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Release Notes", "Vendor Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/09/04/3",
          "name" : "[oss-security] 20160904 CVE ID request: certificate spoofing through crafted SASL message in inspircd, charybdis",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/09/05/8",
          "name" : "[oss-security] 20160905 Re: CVE ID request: certificate spoofing through crafted SASL message in inspircd, charybdis",
          "refsource" : "MLIST",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/inspircd/inspircd/commit/74fafb7f11b06747f69f182ad5e3769b665eea7a",
          "name" : "https://github.com/inspircd/inspircd/commit/74fafb7f11b06747f69f182ad5e3769b665eea7a",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The m_sasl module in InspIRCd before 2.0.23, when used with a service that supports SASL_EXTERNAL authentication, allows remote attackers to spoof certificate fingerprints and consequently log in as another user via a crafted SASL message."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:inspircd:inspircd:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.0.22"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.9,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-09-26T15:59Z",
    "lastModifiedDate" : "2020-09-14T12:33Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-7445",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "leap",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "42.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-476"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-updates/2016-09/msg00109.html",
          "name" : "openSUSE-SU-2016:2424",
          "refsource" : "SUSE",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/09/18/4",
          "name" : "[oss-security] 20160918 CVE request - openjpeg null ptr dereference",
          "refsource" : "MLIST",
          "tags" : [ "Exploit", "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/09/18/6",
          "name" : "[oss-security] 20160918 Re: CVE request - openjpeg null ptr dereference",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/93040",
          "name" : "93040",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/blob/openjpeg-2.1/CHANGELOG.md",
          "name" : "https://github.com/uclouvain/openjpeg/blob/openjpeg-2.1/CHANGELOG.md",
          "refsource" : "CONFIRM",
          "tags" : [ "Release Notes", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/843",
          "name" : "https://github.com/uclouvain/openjpeg/issues/843",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201612-26",
          "name" : "GLSA-201612-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "convert.c in OpenJPEG before 2.1.2 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors involving the variable s."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.1.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:leap:42.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-10-03T16:09Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-8332",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3768",
          "name" : "DSA-3768",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/93242",
          "name" : "93242",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038623",
          "name" : "1038623",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "http://www.talosintelligence.com/reports/TALOS-2016-0193/",
          "name" : "http://www.talosintelligence.com/reports/TALOS-2016-0193/",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/releases/tag/v2.1.2",
          "name" : "https://github.com/uclouvain/openjpeg/releases/tag/v2.1.2",
          "refsource" : "MISC",
          "tags" : [ "Release Notes", "Third Party Advisory" ]
        }, {
          "url" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "name" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing a crafted image. An exploitable code execution vulnerability exists in the jpeg2000 image file format parser as implemented in the OpenJpeg library. A specially crafted jpeg2000 file can cause an out of bound heap write resulting in heap corruption leading to arbitrary code execution. For a successful attack, the target user needs to open a malicious jpeg2000 file. The jpeg2000 image file format is mostly used for embedding images inside PDF documents and the OpenJpeg library is used by a number of popular PDF renderers making PDF documents a likely attack vector."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:2.1.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
          "attackVector" : "LOCAL",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.8,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.8,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-10-28T14:59Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-8624",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "haxx",
            "product" : {
              "product_data" : [ {
                "product_name" : "curl",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.9.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.9.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.9.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.9.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.9.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.9.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.10.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.10.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.10.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.10.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.10.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.10.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.10.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.11.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.11.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.12.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.12.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.12.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.13.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.13.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.13.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.14.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.14.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.15.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.15.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.15.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.15.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.15.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.15.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.16.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.16.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.16.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.16.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.16.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.17.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.17.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.18.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.18.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.18.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.19.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.19.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.19.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.19.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.19.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.19.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.19.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.19.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.19.7-53",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.20.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.20.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.21.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.21.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.21.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.21.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.21.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.21.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.21.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.21.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.22.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.23.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.23.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.24.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.25.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.26.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.27.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.28.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.28.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.29.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.30.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.31.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.32.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.33.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.34.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.35.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.36.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.37.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.37.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.38.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.39.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.40.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.41.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.42.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.42.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.43.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.44.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.45.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.46.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.47.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.47.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.48.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.49.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.49.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.50.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.50.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.50.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.50.3",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-20"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/94103",
          "name" : "94103",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1037192",
          "name" : "1037192",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2486",
          "name" : "RHSA-2018:2486",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3558",
          "name" : "RHSA-2018:3558",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-8624",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-8624",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://curl.haxx.se/docs/adv_20161102J.html",
          "name" : "https://curl.haxx.se/docs/adv_20161102J.html",
          "refsource" : "MISC",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "https://lists.apache.org/thread.html/rfaa4d578587f52a9c4d176af516a681a712c664e3be440a4163691d5@%3Ccommits.pulsar.apache.org%3E",
          "name" : "[pulsar-commits] 20200914 [GitHub] [pulsar] klwilson227 opened a new issue #8061: CVE-2017-14063",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-47",
          "name" : "GLSA-201701-47",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.tenable.com/security/tns-2016-21",
          "name" : "https://www.tenable.com/security/tns-2016-21",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "curl before version 7.51.0 doesn't parse the authority component of the URL correctly when the host name part ends with a '#' character, and could instead be tricked into connecting to a different host. This may have security implications if you for example use an URL parser that follows the RFC to check for allowed domains before using curl to request them."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:haxx:curl:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.51.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "NONE",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-07-31T21:29Z",
    "lastModifiedDate" : "2020-09-14T21:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-9112",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-369"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/93978",
          "name" : "93978",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/855",
          "name" : "https://github.com/uclouvain/openjpeg/issues/855",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Vendor Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2019/07/msg00010.html",
          "name" : "[debian-lts-announce] 20190710 [SECURITY] [DLA 1851-1] openjpeg2 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "name" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Floating Point Exception (aka FPE or divide by zero) in opj_pi_next_cprl function in openjp2/pi.c:523 in OpenJPEG 2.1.2."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:2.1.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-10-29T10:59Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-9113",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-476"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/93980",
          "name" : "93980",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/856",
          "name" : "https://github.com/uclouvain/openjpeg/issues/856",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Vendor Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "There is a NULL pointer dereference in function imagetobmp of convertbmp.c:980 of OpenJPEG 2.1.2. image->comps[0].data is not assigned a value after initialization(NULL). Impact is Denial of Service."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:2.1.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : true,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-10-30T22:59Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-9114",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-476"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/93979",
          "name" : "93979",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/857",
          "name" : "https://github.com/uclouvain/openjpeg/issues/857",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Vendor Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "There is a NULL Pointer Access in function imagetopnm of convert.c:1943(jp2) of OpenJPEG 2.1.2. image->comps[compno].data is not assigned a value after initialization(NULL). Impact is Denial of Service."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:2.1.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-10-30T22:59Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-9115",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/93977",
          "name" : "93977",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/858",
          "name" : "https://github.com/uclouvain/openjpeg/issues/858",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Vendor Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Heap Buffer Over-read in function imagetotga of convert.c(jp2):942 in OpenJPEG 2.1.2. Impact is Denial of Service. Someone must open a crafted j2k file."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:2.1.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-10-30T22:59Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-9116",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-476"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/93975",
          "name" : "93975",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/859",
          "name" : "https://github.com/uclouvain/openjpeg/issues/859",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Vendor Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "NULL Pointer Access in function imagetopnm of convert.c:2226(jp2) in OpenJPEG 2.1.2. Impact is Denial of Service. Someone must open a crafted j2k file."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:2.1.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-10-30T22:59Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-9117",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-476"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/93783",
          "name" : "93783",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/860",
          "name" : "https://github.com/uclouvain/openjpeg/issues/860",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Vendor Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "NULL Pointer Access in function imagetopnm of convert.c(jp2):1289 in OpenJPEG 2.1.2. Impact is Denial of Service. Someone must open a crafted j2k file."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:2.1.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2016-10-30T22:59Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-9118",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-4013",
          "name" : "DSA-4013",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/93976",
          "name" : "93976",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/861",
          "name" : "https://github.com/uclouvain/openjpeg/issues/861",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Vendor Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Heap Buffer Overflow (WRITE of size 4) in function pnmtoimage of convert.c:1719 in OpenJPEG 2.1.2."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:2.1.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2016-10-30T22:59Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-9401",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "gnu",
            "product" : {
              "product_data" : [ {
                "product_name" : "bash",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.14.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.14.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.14.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.14.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.14.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.14.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.14.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.14.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.01",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.01.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.02",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.02.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.03",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.05",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.48",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.57",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.53",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-416"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://rhn.redhat.com/errata/RHSA-2017-0725.html",
          "name" : "RHSA-2017:0725",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/11/17/5",
          "name" : "[oss-security] 20161117 bash - popd controlled free",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2016/11/17/9",
          "name" : "[oss-security] 20161117 Re: bash - popd controlled free",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/94398",
          "name" : "94398",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1931",
          "name" : "RHSA-2017:1931",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2019/03/msg00028.html",
          "name" : "[debian-lts-announce] 20190325 [SECURITY] [DLA 1726-1] bash security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201701-02",
          "name" : "GLSA-201701-02",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "popd in bash might allow local users to bypass the restricted shell and cause a use-after-free via a crafted address."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:gnu:bash:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "4.4"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:gnu:bash:4.4:patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:gnu:bash:4.4:patch2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:gnu:bash:4.4:patch3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:gnu:bash:4.4:patch4:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:gnu:bash:4.4:patch5:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 2.1
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.9,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-01-23T21:59Z",
    "lastModifiedDate" : "2020-09-14T18:32Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-9572",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-476"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/109233",
          "name" : "109233",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9572",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9572",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/szukw000/openjpeg/commit/7b28bd2b723df6be09fe7791eba33147c1c47d0d",
          "name" : "https://github.com/szukw000/openjpeg/commit/7b28bd2b723df6be09fe7791eba33147c1c47d0d",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/863",
          "name" : "https://github.com/uclouvain/openjpeg/issues/863",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-3768",
          "name" : "DSA-3768",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html",
          "name" : "https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A NULL pointer dereference flaw was found in the way openjpeg 2.1.2 decoded certain input images. Due to a logic error in the code responsible for decoding the input image, an application using openjpeg to process image data could crash when processing a crafted image."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:2.1.2:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-08-01T16:29Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-9573",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-125"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://rhn.redhat.com/errata/RHSA-2017-0838.html",
          "name" : "RHSA-2017:0838",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/97073",
          "name" : "97073",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9573",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9573",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/szukw000/openjpeg/commit/7b28bd2b723df6be09fe7791eba33147c1c47d0d",
          "name" : "https://github.com/szukw000/openjpeg/commit/7b28bd2b723df6be09fe7791eba33147c1c47d0d",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/862",
          "name" : "https://github.com/uclouvain/openjpeg/issues/862",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-3768",
          "name" : "DSA-3768",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An out-of-bounds read vulnerability was found in OpenJPEG 2.1.2, in the j2k_to_image tool. Converting a specially crafted JPEG2000 file to another format could cause the application to crash or, potentially, disclose some data from the heap."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:2.1.2:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.1,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 5.2
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-08-01T06:29Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-9580",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-190"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/94822",
          "name" : "94822",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9580",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9580",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/szukw000/openjpeg/commit/cadff5fb6e73398de26a92e96d3d7cac893af255",
          "name" : "https://github.com/szukw000/openjpeg/commit/cadff5fb6e73398de26a92e96d3d7cac893af255",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/871",
          "name" : "https://github.com/uclouvain/openjpeg/issues/871",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An integer overflow vulnerability was found in tiftoimage function in openjpeg 2.1.2, resulting in heap buffer overflow."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:2.1.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.8,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-08-01T16:29Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2016-9581",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/94822",
          "name" : "94822",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9581",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-9581",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/szukw000/openjpeg/commit/cadff5fb6e73398de26a92e96d3d7cac893af255",
          "name" : "https://github.com/szukw000/openjpeg/commit/cadff5fb6e73398de26a92e96d3d7cac893af255",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/872",
          "name" : "https://github.com/uclouvain/openjpeg/issues/872",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-26",
          "name" : "GLSA-201710-26",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An infinite loop vulnerability in tiftoimage that results in heap buffer overflow in convert_32s_C1P1 was found in openjpeg 2.1.2."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:2.1.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.8,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-08-01T14:29Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10053",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.14",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99842",
          "name" : "99842",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "name" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: 2D). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131; JRockit: R28.3.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.14:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10067",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99756",
          "name" : "99756",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10074",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99731",
          "name" : "99731",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10078",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99752",
          "name" : "99752",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "name" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Scripting). The supported version that is affected is Java SE: 8u131. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise Java SE. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java SE accessible data as well as unauthorized access to critical data or complete access to all Java SE accessible data. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 8.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "LOW",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "NONE",
          "baseScore" : 8.1,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 5.2
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.5
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10081",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99853",
          "name" : "99853",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 4.3 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10086",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-4005",
          "name" : "DSA-4005",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99662",
          "name" : "99662",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: JavaFX). Supported versions that are affected are Java SE: 7u141 and 8u131. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10087",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99703",
          "name" : "99703",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10089",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99659",
          "name" : "99659",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: ImageIO). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10090",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99706",
          "name" : "99706",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 7u141 and 8u131; Java SE Embedded: 8u131. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10096",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99670",
          "name" : "99670",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JAXP). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10101",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99674",
          "name" : "99674",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JAXP). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10102",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99712",
          "name" : "99712",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "name" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. While the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.0 Base Score 9.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.0,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10105",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99851",
          "name" : "99851",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 4.3 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10107",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99719",
          "name" : "99719",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10108",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.14",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99846",
          "name" : "99846",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "name" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Serialization). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131; JRockit: R28.3.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.14:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10109",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.14",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99847",
          "name" : "99847",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Serialization). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131; JRockit: R28.3.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.14:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10110",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99643",
          "name" : "99643",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: AWT). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10111",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99707",
          "name" : "99707",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). The supported version that is affected is Java SE: 8u131; Java SE Embedded: 8u131. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10114",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-4005",
          "name" : "DSA-4005",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99726",
          "name" : "99726",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: JavaFX). Supported versions that are affected are Java SE: 7u141 and 8u131. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10115",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.14",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99774",
          "name" : "99774",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "name" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JCE). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131; JRockit: R28.3.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Java SE, Java SE Embedded, JRockit accessible data. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.14:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10116",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.14",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99734",
          "name" : "99734",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "name" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131; JRockit: R28.3.14. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, JRockit, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded, JRockit. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.14:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10118",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.14",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99782",
          "name" : "99782",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "name" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JCE). Supported versions that are affected are Java SE: 7u141 and 8u131; Java SE Embedded: 8u131; JRockit: R28.3.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Java SE, Java SE Embedded, JRockit accessible data. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.14:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10125",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99809",
          "name" : "99809",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). Supported versions that are affected are Java SE: 7u141 and 8u131. Difficult to exploit vulnerability allows physical access to compromise Java SE. While the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: Applies to deployment of Java where the Java Auto Update is enabled. CVSS 3.0 Base Score 7.1 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:P/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:P/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",
          "attackVector" : "PHYSICAL",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.1,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 0.5,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.4
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.4,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10135",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.14",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99839",
          "name" : "99839",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "name" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JCE). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131; JRockit: R28.3.14. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Java SE, Java SE Embedded, JRockit accessible data. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 5.9 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.14:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.9,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10176",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.14",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99788",
          "name" : "99788",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "name" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 7u141 and 8u131; Java SE Embedded: 8u131; JRockit: R28.3.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Java SE, Java SE Embedded, JRockit accessible data. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.14:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10193",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99854",
          "name" : "99854",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 3.1 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "LOW",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 3.1,
          "baseSeverity" : "LOW"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10198",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.14",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3919",
          "name" : "DSA-3919",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99818",
          "name" : "99818",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "name" : "https://cert.vde.com/en-us/advisories/vde-2017-002",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131; JRockit: R28.3.14. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. While the vulnerability is in Java SE, Java SE Embedded, JRockit, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Java SE, Java SE Embedded, JRockit accessible data. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 6.8 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.14:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 6.8,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 4.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10243",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.14",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3954",
          "name" : "DSA-3954",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/99827",
          "name" : "99827",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038931",
          "name" : "1038931",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1789",
          "name" : "RHSA-2017:1789",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1790",
          "name" : "RHSA-2017:1790",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1791",
          "name" : "RHSA-2017:1791",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1792",
          "name" : "RHSA-2017:1792",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2424",
          "name" : "RHSA-2017:2424",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2469",
          "name" : "RHSA-2017:2469",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2481",
          "name" : "RHSA-2017:2481",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2530",
          "name" : "RHSA-2017:2530",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201709-22",
          "name" : "GLSA-201709-22",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20170720-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JAX-WS). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131; JRockit: R28.3.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded, JRockit accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 6.5 (Confidentiality and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.14:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "LOW",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 2.5
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.4
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-08T15:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10274",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101333",
          "name" : "101333",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2998",
          "name" : "RHSA-2017:2998",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3047",
          "name" : "RHSA-2017:3047",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2017/11/msg00033.html",
          "name" : "[debian-lts-announce] 20171123 [SECURITY] [DLA 1187-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201711-14",
          "name" : "GLSA-201711-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4015",
          "name" : "DSA-4015",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4048",
          "name" : "DSA-4048",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.synology.com/support/security/Synology_SA_17_66_OpenJDK",
          "name" : "https://www.synology.com/support/security/Synology_SA_17_66_OpenJDK",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Smart Card IO). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java SE accessible data as well as unauthorized access to critical data or complete access to all Java SE accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 6.8 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "NONE",
          "baseScore" : 6.8,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 5.2
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10281",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.15",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101378",
          "name" : "101378",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2998",
          "name" : "RHSA-2017:2998",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3047",
          "name" : "RHSA-2017:3047",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3264",
          "name" : "RHSA-2017:3264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3267",
          "name" : "RHSA-2017:3267",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3268",
          "name" : "RHSA-2017:3268",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2017/11/msg00033.html",
          "name" : "[debian-lts-announce] 20171123 [SECURITY] [DLA 1187-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201711-14",
          "name" : "GLSA-201711-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4015",
          "name" : "DSA-4015",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4048",
          "name" : "DSA-4048",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Serialization). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144; JRockit: R28.3.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.15:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : true,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10285",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101319",
          "name" : "101319",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2998",
          "name" : "RHSA-2017:2998",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3047",
          "name" : "RHSA-2017:3047",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3264",
          "name" : "RHSA-2017:3264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3267",
          "name" : "RHSA-2017:3267",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3268",
          "name" : "RHSA-2017:3268",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2017/11/msg00033.html",
          "name" : "[debian-lts-announce] 20171123 [SECURITY] [DLA 1187-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201711-14",
          "name" : "GLSA-201711-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4015",
          "name" : "DSA-4015",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4048",
          "name" : "DSA-4048",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.synology.com/support/security/Synology_SA_17_66_OpenJDK",
          "name" : "https://www.synology.com/support/security/Synology_SA_17_66_OpenJDK",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10293",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101338",
          "name" : "101338",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry", "Vendor Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3047",
          "name" : "RHSA-2017:3047",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Javadoc). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE accessible data as well as unauthorized read access to a subset of Java SE accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "LOW",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 6.1,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 2.7
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10295",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.15",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101384",
          "name" : "101384",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2998",
          "name" : "RHSA-2017:2998",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3047",
          "name" : "RHSA-2017:3047",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3264",
          "name" : "RHSA-2017:3264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3267",
          "name" : "RHSA-2017:3267",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3268",
          "name" : "RHSA-2017:3268",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2017/11/msg00033.html",
          "name" : "[debian-lts-announce] 20171123 [SECURITY] [DLA 1187-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201711-14",
          "name" : "GLSA-201711-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4015",
          "name" : "DSA-4015",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4048",
          "name" : "DSA-4048",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Networking). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144; JRockit: R28.3.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Java SE, Java SE Embedded, JRockit. While the vulnerability is in Java SE, Java SE Embedded, JRockit, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded, JRockit accessible data. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 4.0 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.15:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "CHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.0,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10309",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101328",
          "name" : "101328",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3264",
          "name" : "RHSA-2017:3264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3267",
          "name" : "RHSA-2017:3267",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.exploit-db.com/exploits/43103/",
          "name" : "43103",
          "refsource" : "EXPLOIT-DB",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). Supported versions that are affected are Java SE: 8u144 and 9. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE accessible data as well as unauthorized read access to a subset of Java SE accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 7.1 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "LOW",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "LOW",
          "baseScore" : 7.1,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.7
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10345",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.15",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101396",
          "name" : "101396",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2998",
          "name" : "RHSA-2017:2998",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3047",
          "name" : "RHSA-2017:3047",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3264",
          "name" : "RHSA-2017:3264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3267",
          "name" : "RHSA-2017:3267",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3268",
          "name" : "RHSA-2017:3268",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2017/11/msg00033.html",
          "name" : "[debian-lts-announce] 20171123 [SECURITY] [DLA 1187-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201711-14",
          "name" : "GLSA-201711-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4015",
          "name" : "DSA-4015",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4048",
          "name" : "DSA-4048",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Serialization). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144; JRockit: R28.3.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 3.1 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.15:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 3.1,
          "baseSeverity" : "LOW"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10346",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101315",
          "name" : "101315",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2998",
          "name" : "RHSA-2017:2998",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3047",
          "name" : "RHSA-2017:3047",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3264",
          "name" : "RHSA-2017:3264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3267",
          "name" : "RHSA-2017:3267",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3268",
          "name" : "RHSA-2017:3268",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2017/11/msg00033.html",
          "name" : "[debian-lts-announce] 20171123 [SECURITY] [DLA 1187-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201711-14",
          "name" : "GLSA-201711-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4015",
          "name" : "DSA-4015",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4048",
          "name" : "DSA-4048",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.synology.com/support/security/Synology_SA_17_66_OpenJDK",
          "name" : "https://www.synology.com/support/security/Synology_SA_17_66_OpenJDK",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.6,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10347",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101382",
          "name" : "101382",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2998",
          "name" : "RHSA-2017:2998",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3047",
          "name" : "RHSA-2017:3047",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3264",
          "name" : "RHSA-2017:3264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3267",
          "name" : "RHSA-2017:3267",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3268",
          "name" : "RHSA-2017:3268",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2017/11/msg00033.html",
          "name" : "[debian-lts-announce] 20171123 [SECURITY] [DLA 1187-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201711-14",
          "name" : "GLSA-201711-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4015",
          "name" : "DSA-4015",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4048",
          "name" : "DSA-4048",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, JRockit component of Oracle Java SE (subcomponent: Serialization). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, JRockit. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10348",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101354",
          "name" : "101354",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2998",
          "name" : "RHSA-2017:2998",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3047",
          "name" : "RHSA-2017:3047",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3264",
          "name" : "RHSA-2017:3264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3267",
          "name" : "RHSA-2017:3267",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3268",
          "name" : "RHSA-2017:3268",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2017/11/msg00033.html",
          "name" : "[debian-lts-announce] 20171123 [SECURITY] [DLA 1187-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201711-14",
          "name" : "GLSA-201711-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4015",
          "name" : "DSA-4015",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4048",
          "name" : "DSA-4048",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10349",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101348",
          "name" : "101348",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2998",
          "name" : "RHSA-2017:2998",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3047",
          "name" : "RHSA-2017:3047",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3264",
          "name" : "RHSA-2017:3264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3267",
          "name" : "RHSA-2017:3267",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3268",
          "name" : "RHSA-2017:3268",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2017/11/msg00033.html",
          "name" : "[debian-lts-announce] 20171123 [SECURITY] [DLA 1187-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201711-14",
          "name" : "GLSA-201711-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4015",
          "name" : "DSA-4015",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4048",
          "name" : "DSA-4048",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JAXP). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10350",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101341",
          "name" : "101341",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2998",
          "name" : "RHSA-2017:2998",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3264",
          "name" : "RHSA-2017:3264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3267",
          "name" : "RHSA-2017:3267",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3268",
          "name" : "RHSA-2017:3268",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2017/11/msg00033.html",
          "name" : "[debian-lts-announce] 20171123 [SECURITY] [DLA 1187-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201711-14",
          "name" : "GLSA-201711-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4015",
          "name" : "DSA-4015",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4048",
          "name" : "DSA-4048",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JAX-WS). Supported versions that are affected are Java SE: 7u151, 8u144 and 9; Java SE Embedded: 8u144. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10355",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.15",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101369",
          "name" : "101369",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2998",
          "name" : "RHSA-2017:2998",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3047",
          "name" : "RHSA-2017:3047",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3264",
          "name" : "RHSA-2017:3264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3267",
          "name" : "RHSA-2017:3267",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3268",
          "name" : "RHSA-2017:3268",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2017/11/msg00033.html",
          "name" : "[debian-lts-announce] 20171123 [SECURITY] [DLA 1187-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201711-14",
          "name" : "GLSA-201711-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4015",
          "name" : "DSA-4015",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4048",
          "name" : "DSA-4048",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Networking). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144; JRockit: R28.3.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.15:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10356",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-200"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101413",
          "name" : "101413",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2998",
          "name" : "RHSA-2017:2998",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3047",
          "name" : "RHSA-2017:3047",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3264",
          "name" : "RHSA-2017:3264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3267",
          "name" : "RHSA-2017:3267",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3268",
          "name" : "RHSA-2017:3268",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2017/11/msg00033.html",
          "name" : "[debian-lts-announce] 20171123 [SECURITY] [DLA 1187-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201711-14",
          "name" : "GLSA-201711-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4015",
          "name" : "DSA-4015",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4048",
          "name" : "DSA-4048",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144; JRockit: R28.3.15. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Java SE, Java SE Embedded, JRockit executes to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Java SE, Java SE Embedded, JRockit accessible data. Note: This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 6.2 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
          "attackVector" : "LOCAL",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 6.2,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.5,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.1
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10357",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101355",
          "name" : "101355",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2998",
          "name" : "RHSA-2017:2998",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3047",
          "name" : "RHSA-2017:3047",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3264",
          "name" : "RHSA-2017:3264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3267",
          "name" : "RHSA-2017:3267",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3268",
          "name" : "RHSA-2017:3268",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2017/11/msg00033.html",
          "name" : "[debian-lts-announce] 20171123 [SECURITY] [DLA 1187-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201711-14",
          "name" : "GLSA-201711-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4015",
          "name" : "DSA-4015",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4048",
          "name" : "DSA-4048",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Serialization). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-10388",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/101321",
          "name" : "101321",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039596",
          "name" : "1039596",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2998",
          "name" : "RHSA-2017:2998",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2999",
          "name" : "RHSA-2017:2999",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3046",
          "name" : "RHSA-2017:3046",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3047",
          "name" : "RHSA-2017:3047",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3264",
          "name" : "RHSA-2017:3264",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3267",
          "name" : "RHSA-2017:3267",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3268",
          "name" : "RHSA-2017:3268",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3392",
          "name" : "RHSA-2017:3392",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2017/11/msg00033.html",
          "name" : "[debian-lts-announce] 20171123 [SECURITY] [DLA 1187-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201710-31",
          "name" : "GLSA-201710-31",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201711-14",
          "name" : "GLSA-201711-14",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20171019-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4015",
          "name" : "DSA-4015",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2017/dsa-4048",
          "name" : "DSA-4048",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        }, {
          "url" : "https://www.synology.com/support/security/Synology_SA_17_66_OpenJDK",
          "name" : "https://www.synology.com/support/security/Synology_SA_17_66_OpenJDK",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Kerberos to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded. Note: Applies to the Java SE Kerberos client. CVSS 3.0 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_151:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_144:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-10-19T17:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-14063",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "asynchttpclient_project",
            "product" : {
              "product_data" : [ {
                "product_name" : "async-http-client",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.34",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-20"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://openwall.com/lists/oss-security/2017/08/31/4",
          "name" : "http://openwall.com/lists/oss-security/2017/08/31/4",
          "refsource" : "MISC",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2669",
          "name" : "RHSA-2018:2669",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/AsyncHttpClient/async-http-client/issues/1455",
          "name" : "https://github.com/AsyncHttpClient/async-http-client/issues/1455",
          "refsource" : "MISC",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.apache.org/thread.html/rfaa4d578587f52a9c4d176af516a681a712c664e3be440a4163691d5@%3Ccommits.pulsar.apache.org%3E",
          "name" : "[pulsar-commits] 20200914 [GitHub] [pulsar] klwilson227 opened a new issue #8061: CVE-2017-14063",
          "refsource" : "MLIST",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Async Http Client (aka async-http-client) before 2.0.35 can be tricked into connecting to a host different from the one extracted by java.net.URI if a '?' character occurs in a fragment identifier. Similar bugs were previously identified in cURL (CVE-2016-8624) and Oracle Java 8 java.net.URL."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:asynchttpclient_project:async-http-client:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "2.0.35"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "NONE",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-08-31T16:29Z",
    "lastModifiedDate" : "2020-09-14T21:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-15947",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "aspsource",
            "product" : {
              "product_data" : [ {
                "product_name" : "simple_asc_content_management_system",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-79"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.vulnerability-lab.com/get_content.php?id=2072",
          "name" : "https://www.vulnerability-lab.com/get_content.php?id=2072",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Simple ASC Content Management System v1.2 has XSS in the location field in the sign function, related to guestbook.asp, formgb.asp, and msggb.asp."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:aspsource:simple_asc_content_management_system:1.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:S/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 3.5
        },
        "severity" : "LOW",
        "exploitabilityScore" : 6.8,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-10-28T00:29Z",
    "lastModifiedDate" : "2020-09-16T13:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-16659",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "anti-spam_smtp_proxy_project",
            "product" : {
              "product_data" : [ {
                "product_name" : "anti-spam_smtp_proxy",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.9.8.13030",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-732"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://bugs.gentoo.org/629442",
          "name" : "https://bugs.gentoo.org/629442",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The Gentoo mail-filter/assp package 1.9.8.13030 and earlier allows local users to gain privileges by leveraging access to the assp user account to install a Trojan horse /usr/share/assp/assp.pl script."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:anti-spam_smtp_proxy_project:anti-spam_smtp_proxy:*:*:*:*:*:gentoo:*:*",
          "versionEndIncluding" : "1.9.8.13030"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-11-08T05:29Z",
    "lastModifiedDate" : "2020-09-16T13:14Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-16845",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.11.2",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-20"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/101923",
          "name" : "101923",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/09/msg00007.html",
          "name" : "[debian-lts-announce] 20180906 [SECURITY] [DLA 1497-1] qemu security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2017-11/msg02982.html",
          "name" : "[qemu-devel] 20171116 [PATCH v2] ps2: check PS2Queue indices in post_load routine",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3575-1/",
          "name" : "USN-3575-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3649-1/",
          "name" : "USN-3649-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4213",
          "name" : "DSA-4213",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "hw/input/ps2.c in Qemu does not validate 'rptr' and 'count' values during guest migration, leading to out-of-bounds access."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.11.2"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.4
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 4.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-11-17T20:29Z",
    "lastModifiedDate" : "2020-09-10T17:42Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-18030",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.8.1.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-125"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2018/01/15/3",
          "name" : "[oss-security] 20180115 CVE-2017-18030 Qemu: Out-of-bounds access in cirrus_invalidate_region routine",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102520",
          "name" : "102520",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://git.qemu.org/?p=qemu.git;a=commit;h=f153b563f8cf121aebf5a2fff5f0110faf58ccb3",
          "name" : "https://git.qemu.org/?p=qemu.git;a=commit;h=f153b563f8cf121aebf5a2fff5f0110faf58ccb3",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/09/msg00007.html",
          "name" : "[debian-lts-announce] 20180906 [SECURITY] [DLA 1497-1] qemu security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The cirrus_invalidate_region function in hw/display/cirrus_vga.c in Qemu allows local OS guest privileged users to cause a denial of service (out-of-bounds array access and QEMU process crash) via vectors related to negative pitch."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.8.1.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 2.1
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-01-23T18:29Z",
    "lastModifiedDate" : "2020-09-10T17:41Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-18258",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "xmlsoft",
            "product" : {
              "product_data" : [ {
                "product_name" : "libxml2",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.5",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-770"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://git.gnome.org/browse/libxml2/commit/?id=e2a9122b8dde53d320750451e9907a7dcb2ca8bb",
          "name" : "https://git.gnome.org/browse/libxml2/commit/?id=e2a9122b8dde53d320750451e9907a7dcb2ca8bb",
          "refsource" : "MISC",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10284",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10284",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/09/msg00035.html",
          "name" : "[debian-lts-announce] 20180927 [SECURITY] [DLA 1524-1] libxml2 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2020/09/msg00009.html",
          "name" : "[debian-lts-announce] 20200909 [SECURITY] [DLA 2369-1] libxml2 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20190719-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20190719-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3739-1/",
          "name" : "USN-3739-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The xz_head function in xzlib.c in libxml2 before 2.9.6 allows remote attackers to cause a denial of service (memory consumption) via a crafted LZMA file, because the decoder functionality does not restrict memory usage to what is required for a legitimate file."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:xmlsoft:libxml2:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "2.9.6"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-04-08T17:29Z",
    "lastModifiedDate" : "2020-09-10T01:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-18640",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "snakeyaml_project",
            "product" : {
              "product_data" : [ {
                "product_name" : "snakeyaml",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.25",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "fedoraproject",
            "product" : {
              "product_data" : [ {
                "product_name" : "fedora",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "32",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-776"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://bitbucket.org/asomov/snakeyaml/issues/377/allow-configuration-for-preventing-billion",
          "name" : "https://bitbucket.org/asomov/snakeyaml/issues/377/allow-configuration-for-preventing-billion",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://bitbucket.org/asomov/snakeyaml/wiki/Billion%20laughs%20attack",
          "name" : "https://bitbucket.org/asomov/snakeyaml/wiki/Billion%20laughs%20attack",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r1058e7646988394de6a3fd0857ea9b1ee0de14d7bb28fee5ff782457@%3Ccommits.atlas.apache.org%3E",
          "name" : "[atlas-commits] 20200916 [atlas] 02/02: ATLAS-3940 : Upgrade snakeyaml to a version without CVE-2017-18640 (#110)",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r154090b871cf96d985b90864442d84eb027c72c94bc3f0a5727ba2d1@%3Ccommon-issues.hadoop.apache.org%3E",
          "name" : "[hadoop-common-issues] 20200909 [jira] [Commented] (HADOOP-17236) Bump up snakeyaml to 1.26 to mitigate CVE-2017-18640",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r1dfac8b6a7097bcb4979402bbb6e2f8c36d0d9001e3018717eb22b7e@%3Cdev.atlas.apache.org%3E",
          "name" : "[atlas-dev] 20200907 [GitHub] [atlas] crazylab opened a new pull request #109: Upgrade snakeyaml to a version without CVE-2017-18640",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r28c9009a48d52cf448f8b02cd823da0f8601d2dff4d66f387a35f1e0@%3Cdev.atlas.apache.org%3E",
          "name" : "[atlas-dev] 20200914 [GitHub] [atlas] nixonrodrigues commented on pull request #110: ATLAS-3940 : Upgrade snakeyaml to a version without CVE-2017-18640",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r2a5b84fdf59042dc398497e914b5bb1aed77328320b1438144ae1953@%3Cdev.atlas.apache.org%3E",
          "name" : "[atlas-dev] 20200907 [GitHub] [atlas] crazylab opened a new pull request #110: Upgrade snakeyaml to a version without CVE-2017-18640",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r2b05744c0c2867daa5d1a96832965b7d6220328b0ead06c22a6e7854@%3Ccommits.pulsar.apache.org%3E",
          "name" : "[pulsar-commits] 20200831 [GitHub] [pulsar] wolfstudy edited a comment on issue #7928: CVE-2017-18640 exposure snakeyaml below 1.26",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r2db207a2431a5e9e95e899858ab1f5eabd9bcc790a6ca7193ae07e94@%3Cdev.atlas.apache.org%3E",
          "name" : "[atlas-dev] 20200915 [jira] [Commented] (ATLAS-3940) Upgrade snakeyaml to a version without CVE-2017-18640",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r4c682fb8cf69dd14162439656a6ebdf42ea6ad0e4edba95907ea3f14@%3Ccommits.servicecomb.apache.org%3E",
          "name" : "https://lists.apache.org/thread.html/r4c682fb8cf69dd14162439656a6ebdf42ea6ad0e4edba95907ea3f14@%3Ccommits.servicecomb.apache.org%3E",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r5510f0125ba409fc1cabd098ab8b457741e5fa314cbd0e61e4339422@%3Cdev.atlas.apache.org%3E",
          "name" : "[atlas-dev] 20200915 [GitHub] [atlas] nixonrodrigues merged pull request #110: ATLAS-3940 : Upgrade snakeyaml to a version without CVE-2017-18640",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r643ba53f002ae59068f9352fe1d82e1b6f375387ffb776f13efe8fda@%3Ccommon-issues.hadoop.apache.org%3E",
          "name" : "[hadoop-common-issues] 20200830 [jira] [Created] (HADOOP-17236) Bump up snakeyaml to 1.26 to mitigate CVE-2017-18640",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r666f29a7d0e1f98fa1425ca01efcfa86e6e3856e01d300828aa7c6ea@%3Ccommits.pulsar.apache.org%3E",
          "name" : "[pulsar-commits] 20200907 [GitHub] [pulsar] jiazhai closed issue #7928: CVE-2017-18640 exposure snakeyaml below 1.26",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r6c91e52b3cc9f4e64afe0f34f20507143fd1f756d12681a56a9b38da@%3Ccommits.pulsar.apache.org%3E",
          "name" : "[pulsar-commits] 20200831 [GitHub] [pulsar] wolfstudy commented on issue #7928: CVE-2017-18640 exposure snakeyaml below 1.26",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r6d54c2da792c74cc14b9b7665ea89e144c9e238ed478d37fd56292e6@%3Cdev.atlas.apache.org%3E",
          "name" : "[atlas-dev] 20200907 [GitHub] [atlas] crazylab closed pull request #109: Upgrade snakeyaml to a version without CVE-2017-18640",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r72a3588d62b2de1361dc9648f5d355385735e47f7ba49d089b0e680d@%3Ccommon-issues.hadoop.apache.org%3E",
          "name" : "[hadoop-common-issues] 20200831 [jira] [Commented] (HADOOP-17236) Bump up snakeyaml to 1.26 to mitigate CVE-2017-18640",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r8464b6ec951aace8c807bac9ea526d4f9e3116aa16d38be06f7c6524@%3Ccommon-issues.hadoop.apache.org%3E",
          "name" : "[hadoop-common-issues] 20200830 [jira] [Updated] (HADOOP-17236) Bump up snakeyaml to 1.26 to mitigate CVE-2017-18640",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r8b57c57cffa01e418868a3c7535b987635ff1fb5ab534203bfa2d64a@%3Ccommits.pulsar.apache.org%3E",
          "name" : "[pulsar-commits] 20200830 [GitHub] [pulsar] codelipenghui commented on issue #7928: CVE-2017-18640 exposure snakeyaml below 1.26",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r900e020760c89f082df1c6e0d46320eba721e4e47bb9eb521e68cd95@%3Ccommits.servicecomb.apache.org%3E",
          "name" : "https://lists.apache.org/thread.html/r900e020760c89f082df1c6e0d46320eba721e4e47bb9eb521e68cd95@%3Ccommits.servicecomb.apache.org%3E",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/rb0e033d5ec8233360203431ad96580cf2ec56f47d9a425d894e279c2@%3Cpr.cassandra.apache.org%3E",
          "name" : "[cassandra-pr] 20200907 [GitHub] [cassandra] crazylab opened a new pull request #736: Upgrade to a snakeyaml version without CVE",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/rb34d8d3269ad47a1400f5a1a2d8310e13a80b6576ebd7f512144198d@%3Ccommon-dev.hadoop.apache.org%3E",
          "name" : "[hadoop-common-dev] 20200830 [jira] [Created] (HADOOP-17236) Bump up snakeyaml to 1.26 to mitigate CVE-2017-18640",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/rb7b28ac741e32dd5edb2c22485d635275bead7290b056ee56baf8ce0@%3Cdev.atlas.apache.org%3E",
          "name" : "[atlas-dev] 20200914 [jira] [Created] (ATLAS-3940) Upgrade snakeyaml to a version without CVE-2017-18640",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/rce5c93bba6e815fb62ad38e28ca1943b3019af1eddeb06507ad4e11a@%3Ccommits.atlas.apache.org%3E",
          "name" : "[atlas-commits] 20200915 [atlas] branch master updated: ATLAS-3940 : Upgrade snakeyaml to a version without CVE-2017-18640 (#110)",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/re791a854001ec1f79cd4f47328b270e7a1d9d7056debb8f16d962722@%3Cdev.atlas.apache.org%3E",
          "name" : "[atlas-dev] 20200914 [jira] [Updated] (ATLAS-3940) Upgrade snakeyaml to a version without CVE-2017-18640",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/re851bbfbedd47c690b6e01942acb98ee08bd00df1a94910b905bc8cd@%3Cdev.atlas.apache.org%3E",
          "name" : "[atlas-dev] 20200916 [jira] [Commented] (ATLAS-3940) Upgrade snakeyaml to a version without CVE-2017-18640",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/CKN7VGIKTYBCAKYBRG55QHXAY5UDZ7HA/",
          "name" : "FEDORA-2020-599514b47e",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PTVJC54XGX26UJVVYCXZ7D25X3R5T2G6/",
          "name" : "FEDORA-2020-23012fafbc",
          "refsource" : "FEDORA",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://mvnrepository.com/artifact/org.yaml/snakeyaml/1.25/usages",
          "name" : "https://mvnrepository.com/artifact/org.yaml/snakeyaml/1.25/usages",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The Alias feature in SnakeYAML 1.18 allows entity expansion during a load operation, a related issue to CVE-2003-1564."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:snakeyaml_project:snakeyaml:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "1.26"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2019-12-12T03:15Z",
    "lastModifiedDate" : "2020-09-16T10:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-2096",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "smalruby",
            "product" : {
              "product_data" : [ {
                "product_name" : "smalruby-editor",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "0.4.0",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-78"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://jvn.jp/en/jp/JVN50197114/index.html",
          "name" : "JVN#50197114",
          "refsource" : "JVN",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://smalruby.jp/blog/2017/01/14/smalruby-editor-0-4-1-has-been-released-english.html",
          "name" : "http://smalruby.jp/blog/2017/01/14/smalruby-editor-0-4-1-has-been-released-english.html",
          "refsource" : "MISC",
          "tags" : [ "Release Notes", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/95775",
          "name" : "95775",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "smalruby-editor v0.4.0 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:smalruby:smalruby-editor:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "0.4.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 10.0
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-04-28T16:59Z",
    "lastModifiedDate" : "2020-09-09T15:12Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-2599",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "jenkins",
            "product" : {
              "product_data" : [ {
                "product_name" : "jenkins",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.45",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.46",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.47",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.48",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.49",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.50",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.51",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.52",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.53",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.54",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.55",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.56",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.57",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.58",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.59",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.60",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.61",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.62",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.63",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.64",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.65",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.66",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.67",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.68",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.69",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.70",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.71",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.72",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.73",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.74",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.75",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.76",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.77",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.78",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.79",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.80",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.81",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.82",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.83",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.84",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.85",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.86",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.87",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.88",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.89",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.90",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.91",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.92",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.93",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.94",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.95",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.96",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.97",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.98",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.99",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.100",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.101",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.102",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.103",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.104",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.105",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.106",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.107",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.108",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.109",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.110",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.111",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.112",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.113",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.114",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.115",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.116",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.117",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.118",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.119",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.120",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.121",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.122",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.123",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.124",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.125",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.126",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.127",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.128",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.129",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.130",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.131",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.132",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.133",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.134",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.135",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.136",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.137",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.138",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.139",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.140",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.141",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.142",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.143",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.144",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.145",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.146",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.147",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.148",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.149",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.150",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.151",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.152",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.153",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.154",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.155",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.156",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.157",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.158",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.159",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.160",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.161",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.162",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.163",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.164",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.165",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.166",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.167",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.168",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.169",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.170",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.171",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.172",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.173",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.174",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.175",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.176",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.177",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.178",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.179",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.180",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.181",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.182",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.183",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.184",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.185",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.186",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.187",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.188",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.189",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.190",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.191",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.192",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.193",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.194",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.195",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.196",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.197",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.198",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.199",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.200",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.201",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.202",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.203",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.204",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.205",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.206",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.207",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.208",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.209",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.210",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.211",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.212",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.213",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.214",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.215",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.216",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.217",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.218",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.219",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.220",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.221",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.222",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.223",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.224",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.225",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.226",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.227",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.228",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.229",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.230",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.231",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.232",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.233",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.234",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.235",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.236",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.237",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.238",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.239",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.240",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.241",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.242",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.243",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.244",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.245",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.247",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.248",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.249",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.250",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.251",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.252",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.253",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.254",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.255",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.256",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.257",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.258",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.259",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.260",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.261",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.262",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.263",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.264",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.265",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.266",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.267",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.268",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.269",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.270",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.271",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.272",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.273",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.274",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.275",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.276",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.277",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.278",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.279",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.280",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.281",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.282",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.283",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.284",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.285",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.286",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.287",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.288",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.289",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.290",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.291",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.292",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.293",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.294",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.295",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.296",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.297",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.298",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.299",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.300",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.301",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.302",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.303",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.304",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.305",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.306",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.307",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.308",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.309",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.310",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.311",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.312",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.313",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.314",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.315",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.316",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.317",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.318",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.319",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.320",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.321",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.322",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.323",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.324",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.325",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.326",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.327",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.328",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.329",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.330",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.331",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.332",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.333",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.334",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.335",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.336",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.337",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.338",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.339",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.340",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.341",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.342",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.343",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.344",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.345",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.346",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.347",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.348",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.349",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.350",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.351",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.352",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.353",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.354",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.355",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.356",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.357",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.358",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.359",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.360",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.361",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.362",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.363",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.364",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.365",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.366",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.367",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.368",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.369",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.370",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.371",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.372",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.373",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.374",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.375",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.376",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.377",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.378",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.379",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.380",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.381",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.382",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.383",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.384",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.385",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.386",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.387",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.388",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.389",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.390",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.391",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.392",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.393",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.394",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.395",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.395.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.396",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.397",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.398",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.399",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.400",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.401",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.402",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.403",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.404",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.405",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.406",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.407",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.408",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.408.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.408.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.408.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.409",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.409.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.409.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.409.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.410",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.411",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.412",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.413",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.414",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.415",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.416",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.417",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.418",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.419",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.420",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.421",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.422",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.423",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.424",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.424.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.424.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.424.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.424.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.424.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.424.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.425",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.426",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.427",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.428",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.429",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.430",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.431",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.432",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.433",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.434",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.435",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.436",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.437",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.438",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.439",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.440",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.441",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.442",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.443",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.444",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.445",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.446",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.447",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.447.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.447.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.448",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.449",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.450",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.451",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.452",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.453",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.454",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.455",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.456",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.457",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.458",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.459",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.460",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.461",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.462",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.463",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.464",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.465",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.466",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.466.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.466.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.467",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.468",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.469",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.470",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.471",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.472",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.473",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.474",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.475",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.476",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.477",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.478",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.479",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.480",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.480.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.480.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.480.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.480.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.481",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.482",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.483",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.484",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.485",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.486",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.487",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.488",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.489",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.490",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.491",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.492",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.493",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.494",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.495",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.496",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.497",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.498",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.499",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.500",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.501",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.502",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.503",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.504",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.505",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.506",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.507",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.508",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.509",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.509.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.509.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.509.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.509.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.510",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.511",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.512",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.513",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.514",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.515",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.516",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.517",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.518",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.519",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.520",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.521",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.522",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.523",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.524",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.525",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.526",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.527",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.528",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.529",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.530",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.531",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.532",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.532.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.532.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.532.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.533",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.534",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.535",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.536",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.537",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.538",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.539",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.540",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.541",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.542",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.543",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.544",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.545",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.546",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.547",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.548",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.549",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.550",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.551",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.552",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.553",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.554",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.554.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.554.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.554.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.555",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.556",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.557",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.558",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.559",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.560",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.561",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.562",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.563",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.564",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.565",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.565.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.565.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.565.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.566",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.567",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.568",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.569",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.570",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.571",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.572",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.573",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.574",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.575",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.576",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.577",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.578",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.579",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.580",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.580.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.580.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.580.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.581",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.582",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.583",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.584",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.585",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.586",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.587",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.588",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.589",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.590",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.591",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.592",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.593",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.594",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.595",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.596",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.596.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.596.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.596.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.597",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.598",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.599",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.600",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.601",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.602",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.603",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.604",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.605",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.606",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.607",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.608",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.609",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.609.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.609.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.609.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.610",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.611",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.612",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.613",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.614",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.615",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.616",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.617",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.618",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.619",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.620",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.621",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.622",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.623",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.624",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.625",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.625.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.625.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.625.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.626",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.627",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.628",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.629",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.630",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.631",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.632",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.633",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.634",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.635",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.636",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.637",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.638",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.639",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.640",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.641",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.642",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.642.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.642.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.642.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.642.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.643",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.644",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.645",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.646",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.647",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.648",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.649",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.650",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.651",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.651.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.651.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.651.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.652",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.653",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.654",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.655",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.656",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.657",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.658",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.58",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.19.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.19.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.19.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.19.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.32.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.32.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.32.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.43",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-863"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/95949",
          "name" : "95949",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-2599",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-2599",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/jenkinsci/jenkins/commit/4ed5c850b6855ab064a66d02fb338f366853ce89",
          "name" : "https://github.com/jenkinsci/jenkins/commit/4ed5c850b6855ab064a66d02fb338f366853ce89",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://jenkins.io/security/advisory/2017-02-01/",
          "name" : "https://jenkins.io/security/advisory/2017-02-01/",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Jenkins before versions 2.44 and 2.32.2 is vulnerable to an insufficient permission check. This allows users with permissions to create new items (e.g. jobs) to overwrite existing items they don't have access to (SECURITY-321)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:jenkins:jenkins:*:*:*:*:lts:*:*:*",
          "versionEndExcluding" : "2.32.2"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:jenkins:jenkins:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "2.44"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.5
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-04-11T16:29Z",
    "lastModifiedDate" : "2020-09-09T14:55Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-2611",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "jenkins",
            "product" : {
              "product_data" : [ {
                "product_name" : "jenkins",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.43",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.44",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.45",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.46",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.47",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.48",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.49",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.50",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.51",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.52",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.53",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.54",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.55",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.56",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.57",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.58",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.59",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.60",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.61",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.62",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.63",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.64",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.65",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.66",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.67",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.68",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.69",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.70",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.71",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.72",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.73",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.74",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.75",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.76",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.77",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.78",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.79",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.80",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.81",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.82",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.83",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.84",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.85",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.86",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.87",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.88",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.89",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.90",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.91",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.92",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.93",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.94",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.95",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.96",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.97",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.98",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.99",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.100",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.101",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.102",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.103",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.104",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.105",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.106",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.107",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.108",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.109",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.110",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.111",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.112",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.113",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.114",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.115",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.116",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.117",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.118",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.119",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.120",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.121",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.122",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.123",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.124",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.125",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.126",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.127",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.128",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.129",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.130",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.131",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.132",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.133",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.134",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.135",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.136",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.137",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.138",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.139",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.140",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.141",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.142",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.143",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.144",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.145",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.146",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.147",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.148",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.149",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.150",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.151",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.152",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.153",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.154",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.155",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.156",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.157",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.158",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.159",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.160",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.161",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.162",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.163",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.164",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.165",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.166",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.167",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.168",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.169",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.170",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.171",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.172",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.173",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.174",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.175",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.176",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.177",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.178",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.179",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.180",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.181",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.182",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.183",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.184",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.185",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.186",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.187",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.188",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.189",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.190",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.191",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.192",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.193",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.194",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.195",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.196",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.197",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.198",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.199",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.200",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.201",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.202",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.203",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.204",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.205",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.206",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.207",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.208",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.209",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.210",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.211",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.212",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.213",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.214",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.215",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.216",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.217",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.218",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.219",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.220",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.221",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.222",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.223",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.224",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.225",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.226",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.227",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.228",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.229",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.230",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.231",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.232",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.233",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.234",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.235",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.236",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.237",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.238",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.239",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.240",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.241",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.242",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.243",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.244",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.245",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.247",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.248",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.249",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.250",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.251",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.252",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.253",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.254",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.255",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.256",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.257",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.258",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.259",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.260",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.261",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.262",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.263",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.264",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.265",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.266",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.267",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.268",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.269",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.270",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.271",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.272",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.273",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.274",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.275",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.276",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.277",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.278",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.279",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.280",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.281",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.282",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.283",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.284",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.285",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.286",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.287",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.288",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.289",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.290",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.291",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.292",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.293",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.294",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.295",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.296",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.297",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.298",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.299",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.300",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.301",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.302",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.303",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.304",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.305",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.306",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.307",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.308",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.309",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.310",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.311",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.312",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.313",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.314",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.315",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.316",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.317",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.318",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.319",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.320",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.321",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.322",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.323",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.324",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.325",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.326",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.327",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.328",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.329",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.330",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.331",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.332",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.333",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.334",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.335",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.336",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.337",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.338",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.339",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.340",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.341",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.342",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.343",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.344",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.345",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.346",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.347",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.348",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.349",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.350",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.351",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.352",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.353",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.354",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.355",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.356",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.357",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.358",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.359",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.360",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.361",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.362",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.363",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.364",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.365",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.366",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.367",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.368",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.369",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.370",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.371",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.372",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.373",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.374",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.375",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.376",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.377",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.378",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.379",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.380",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.381",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.382",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.383",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.384",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.385",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.386",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.387",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.388",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.389",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.390",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.391",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.392",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.393",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.394",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.395",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.395.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.396",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.397",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.398",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.399",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.400",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.401",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.402",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.403",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.404",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.405",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.406",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.407",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.408",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.408.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.408.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.408.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.409",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.409.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.409.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.409.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.410",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.411",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.412",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.413",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.414",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.415",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.416",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.417",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.418",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.419",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.420",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.421",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.422",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.423",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.424",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.424.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.424.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.424.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.424.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.424.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.424.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.425",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.426",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.427",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.428",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.429",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.430",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.431",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.432",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.433",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.434",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.435",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.436",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.437",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.438",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.439",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.440",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.441",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.442",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.443",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.444",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.445",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.446",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.447",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.447.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.447.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.448",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.449",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.450",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.451",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.452",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.453",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.454",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.455",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.456",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.457",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.458",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.459",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.460",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.461",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.462",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.463",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.464",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.465",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.466",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.466.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.466.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.467",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.468",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.469",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.470",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.471",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.472",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.473",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.474",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.475",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.476",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.477",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.478",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.479",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.480",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.480.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.480.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.480.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.480.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.481",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.482",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.483",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.484",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.485",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.486",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.487",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.488",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.489",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.490",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.491",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.492",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.493",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.494",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.495",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.496",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.497",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.498",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.499",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.500",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.501",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.502",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.503",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.504",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.505",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.506",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.507",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.508",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.509",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.509.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.509.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.509.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.509.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.510",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.511",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.512",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.513",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.514",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.515",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.516",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.517",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.518",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.519",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.520",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.521",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.522",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.523",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.524",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.525",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.526",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.527",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.528",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.529",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.530",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.531",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.532",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.532.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.532.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.532.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.533",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.534",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.535",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.536",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.537",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.538",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.539",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.540",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.541",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.542",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.543",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.544",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.545",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.546",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.547",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.548",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.549",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.550",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.551",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.552",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.553",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.554",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.554.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.554.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.554.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.555",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.556",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.557",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.558",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.559",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.560",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.561",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.562",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.563",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.564",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.565",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.565.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.565.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.565.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.566",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.567",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.568",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.569",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.570",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.571",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.572",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.573",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.574",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.575",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.576",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.577",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.578",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.579",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.580",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.580.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.580.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.580.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.581",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.582",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.583",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.584",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.585",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.586",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.587",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.588",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.589",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.590",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.591",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.592",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.593",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.594",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.595",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.596",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.596.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.596.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.596.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.597",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.598",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.599",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.600",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.601",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.602",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.603",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.604",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.605",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.606",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.607",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.608",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.609",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.609.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.609.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.609.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.610",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.611",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.612",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.613",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.614",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.615",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.616",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.617",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.618",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.619",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.620",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.621",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.622",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.623",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.624",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.625",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.625.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.625.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.625.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.626",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.627",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.628",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.629",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.630",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.631",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.632",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.633",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.634",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.635",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.636",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.637",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.638",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.639",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.640",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.641",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.642",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.642.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.642.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.642.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.642.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.643",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.644",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.645",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.646",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.647",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.648",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.649",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.650",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.651",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.651.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.651.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.651.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.652",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.653",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.654",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.655",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.656",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.657",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.658",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.58",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.19.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.19.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.19.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.19.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.31",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.32",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.32.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.32.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.32.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.33",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.34",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.35",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.36",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.37",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.38",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.39",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.40",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.41",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.42",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.43",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "openshift",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-863"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/95956",
          "name" : "95956",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-2611",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-2611",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/jenkinsci/jenkins/commit/97a61a9fe55f4c16168c123f98301a5173b9fa86",
          "name" : "https://github.com/jenkinsci/jenkins/commit/97a61a9fe55f4c16168c123f98301a5173b9fa86",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://jenkins.io/security/advisory/2017-02-01/",
          "name" : "https://jenkins.io/security/advisory/2017-02-01/",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Jenkins before versions 2.44, 2.32.2 is vulnerable to an insufficient permission check for periodic processes (SECURITY-389). The URLs /workspaceCleanup and /fingerprintCleanup did not perform permission checks, allowing users with read access to Jenkins to trigger these background processes (that are otherwise performed daily), possibly causing additional load on Jenkins master and agents."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:jenkins:jenkins:*:*:*:*:lts:*:*:*",
          "versionEndExcluding" : "2.32.2"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:jenkins:jenkins:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "2.44"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openshift:2.0:*:*:*:enterprise:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openshift:3.0:*:*:*:enterprise:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-05-08T18:29Z",
    "lastModifiedDate" : "2020-09-09T14:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-3512",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "icedtea",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/97727",
          "name" : "97727",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038286",
          "name" : "1038286",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201705-03",
          "name" : "GLSA-201705-03",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201707-01",
          "name" : "GLSA-201707-01",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: AWT). Supported versions that are affected are Java SE: 7u131 and 8u121. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_121:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:icedtea:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "3.4.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-04-24T19:59Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-3533",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.13",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "icedtea",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3858",
          "name" : "DSA-3858",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/97740",
          "name" : "97740",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038286",
          "name" : "1038286",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1108",
          "name" : "RHSA-2017:1108",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1109",
          "name" : "RHSA-2017:1109",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1117",
          "name" : "RHSA-2017:1117",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1118",
          "name" : "RHSA-2017:1118",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1119",
          "name" : "RHSA-2017:1119",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1204",
          "name" : "RHSA-2017:1204",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1220",
          "name" : "RHSA-2017:1220",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1221",
          "name" : "RHSA-2017:1221",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1222",
          "name" : "RHSA-2017:1222",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201705-03",
          "name" : "GLSA-201705-03",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201707-01",
          "name" : "GLSA-201707-01",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Networking). Supported versions that are affected are Java SE: 6u141, 7u131 and 8u121; Java SE Embedded: 8u121; JRockit: R28.3.13. Difficult to exploit vulnerability allows unauthenticated attacker with network access via FTP to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded, JRockit accessible data. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 3.7 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.13:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:icedtea:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "3.4.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 3.7,
          "baseSeverity" : "LOW"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-04-24T19:59Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-3539",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "icedtea",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3858",
          "name" : "DSA-3858",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/97752",
          "name" : "97752",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038286",
          "name" : "1038286",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1108",
          "name" : "RHSA-2017:1108",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1109",
          "name" : "RHSA-2017:1109",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1117",
          "name" : "RHSA-2017:1117",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1118",
          "name" : "RHSA-2017:1118",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1119",
          "name" : "RHSA-2017:1119",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1204",
          "name" : "RHSA-2017:1204",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1220",
          "name" : "RHSA-2017:1220",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1221",
          "name" : "RHSA-2017:1221",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1222",
          "name" : "RHSA-2017:1222",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201705-03",
          "name" : "GLSA-201705-03",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201707-01",
          "name" : "GLSA-201707-01",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u141, 7u131 and 8u121; Java SE Embedded: 8u121. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 3.1 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_121:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:icedtea:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "3.4.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 3.1,
          "baseSeverity" : "LOW"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:S/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.1
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.9,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-04-24T19:59Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-3544",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.13",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "icedtea",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "google",
            "product" : {
              "product_data" : [ {
                "product_name" : "android",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "4.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.1.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.debian.org/security/2017/dsa-3858",
          "name" : "DSA-3858",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2017-3236618.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/97745",
          "name" : "97745",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1038286",
          "name" : "1038286",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1108",
          "name" : "RHSA-2017:1108",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1109",
          "name" : "RHSA-2017:1109",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1117",
          "name" : "RHSA-2017:1117",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1118",
          "name" : "RHSA-2017:1118",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1119",
          "name" : "RHSA-2017:1119",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1204",
          "name" : "RHSA-2017:1204",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1220",
          "name" : "RHSA-2017:1220",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1221",
          "name" : "RHSA-2017:1221",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:1222",
          "name" : "RHSA-2017:1222",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:3453",
          "name" : "RHSA-2017:3453",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201705-03",
          "name" : "GLSA-201705-03",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201707-01",
          "name" : "GLSA-201707-01",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://source.android.com/security/bulletin/2017-07-01",
          "name" : "https://source.android.com/security/bulletin/2017-07-01",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Networking). Supported versions that are affected are Java SE: 6u141, 7u131 and 8u121; Java SE Embedded: 8u121; JRockit: R28.3.13. Difficult to exploit vulnerability allows unauthenticated attacker with network access via SMTP to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded, JRockit accessible data. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 3.7 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_141:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_131:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_121:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.13:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.3:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:icedtea:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "3.4.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:google:android:4.4.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:google:android:5.0.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:google:android:5.1.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:google:android:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:google:android:6.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:google:android:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:google:android:7.1.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:google:android:7.1.2:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 3.7,
          "baseSeverity" : "LOW"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-04-24T19:59Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-6331",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "symantec",
            "product" : {
              "product_data" : [ {
                "product_name" : "endpoint_protection",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.3001",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.6000",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.6100",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.6200",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.6200.754",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.6300",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.7000",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.7100",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.122.192",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.1001.95",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.4.1a",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.4.1b",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.4a",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.671",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.671.4971",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.1000",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.1000.157",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.1101.401",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.2015.2015",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.2100.2093",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.3001.165",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.4013.4013",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.4023.4080",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.4100.4126",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.4104.4130",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.4112.4156",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.5337.5000",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.6168.6000",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.6306.6100",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.6318.6100",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.6465.6200",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.6608.6300",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.6867.6400",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.7004.6500",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.7061.6600",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.7166.6700",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.7266.6800",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.7369.6900",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.7384.6902",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.7385.6902",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.7445.7000",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.7454.7000",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.7510.7002",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/101502",
          "name" : "101502",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1039775",
          "name" : "1039775",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://www.exploit-db.com/exploits/43134/",
          "name" : "43134",
          "refsource" : "EXPLOIT-DB",
          "tags" : [ "Exploit", "Issue Tracking", "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20171106_00",
          "name" : "https://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20171106_00",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Prior to SEP 14 RU1 Symantec Endpoint Protection product can encounter an issue of Tamper-Protection Bypass, which is a type of attack that bypasses the real time protection for the application that is run on servers and clients."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:symantec:endpoint_protection:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "14.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:P/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 3.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.9,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-11-06T23:29Z",
    "lastModifiedDate" : "2020-09-16T13:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-7377",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.8.1",
                    "version_affected" : "<="
                  }, {
                    "version_value" : "2.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-772"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://git.qemu-project.org/?p=qemu.git;a=commit;h=d63fb193e71644a073b77ff5ac6f1216f2f6cf6e",
          "name" : "http://git.qemu-project.org/?p=qemu.git;a=commit;h=d63fb193e71644a073b77ff5ac6f1216f2f6cf6e",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2017/04/03/2",
          "name" : "[oss-security] 20170403 CVE-2017-7377 Qemu: 9pfs: host memory leakage via v9fs_create",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/97319",
          "name" : "97319",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1437871",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1437871",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/09/msg00007.html",
          "name" : "[debian-lts-announce] 20180906 [SECURITY] [DLA 1497-1] qemu security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2017-03/msg05449.html",
          "name" : "[qemu-devel] 20170328 [PULL 1/2] 9pfs: fix file descriptor leak",
          "refsource" : "MLIST",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201706-03",
          "name" : "GLSA-201706-03",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The (1) v9fs_create and (2) v9fs_lcreate functions in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allow local guest OS privileged users to cause a denial of service (file descriptor or memory consumption) via vectors related to an already in-use fid."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.8.1"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.9.0:rc0:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.9.0:rc1:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 2.1
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-04-10T15:59Z",
    "lastModifiedDate" : "2020-09-10T17:40Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-7471",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.8.1.1",
                    "version_affected" : "<="
                  }, {
                    "version_value" : "2.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-732"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2017/04/19/2",
          "name" : "[oss-security] 20170419 CVE-2017-7471 Qemu: 9p: virtfs allows guest to change filesystem attributes on host",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/97970",
          "name" : "97970",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7471",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7471",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://git.qemu.org/?p=qemu.git;a=commitdiff;h=9c6b899f7a46893ab3b671e341a2234e9c0c060e",
          "name" : "https://git.qemu.org/?p=qemu.git;a=commitdiff;h=9c6b899f7a46893ab3b671e341a2234e9c0c060e",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201706-03",
          "name" : "GLSA-201706-03",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Quick Emulator (Qemu) built with the VirtFS, host directory sharing via Plan 9 File System (9pfs) support, is vulnerable to an improper access control issue. It could occur while accessing files on a shared host directory. A privileged user inside guest could use this flaw to access host file system beyond the shared folder and potentially escalating their privileges on a host."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.8.1.1"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.9.0:rc0:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.9.0:rc1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.9.0:rc2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.9.0:rc3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.9.0:rc4:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:A/AC:L/Au:S/C:C/I:C/A:C",
          "accessVector" : "ADJACENT_NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.7
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 5.1,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-07-09T14:29Z",
    "lastModifiedDate" : "2020-09-10T17:40Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-7480",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "rootkit_hunter_project",
            "product" : {
              "product_data" : [ {
                "product_name" : "rootkit_hunter",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.4.2",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-417"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://seclists.org/oss-sec/2017/q2/643",
          "name" : "[oss-security] 20170629 rkhunter: [CVE-2017-7480] Potential RCE after MiTM due to clear text download without signature",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201805-11",
          "name" : "GLSA-201805-11",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "rkhunter versions before 1.4.4 are vulnerable to file download over insecure channel when doing mirror update resulting into potential remote code execution."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:rootkit_hunter_project:rootkit_hunter:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "1.4.2"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-07-21T22:29Z",
    "lastModifiedDate" : "2020-09-09T15:11Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-7876",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qnap",
            "product" : {
              "product_data" : [ {
                "product_name" : "qts",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "4.2.6",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-77"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.qnap.com/en/release-notes/qts/4.2.6/20170517",
          "name" : "N/A",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.qnap.com/en/release-notes/qts/4.3.3.0174/20170503",
          "name" : "N/A",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://www.qnap.com/zh-tw/security-advisory/nas-201707-12",
          "name" : "N/A",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "This command injection vulnerability in QTS allows attackers to run arbitrary commands in the compromised application. QNAP have already fixed the issue in QTS 4.2.6 build 20170517, QTS 4.3.3.0174 build 20170503 and later versions."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:qnap:qts:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "4.2.6"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.8,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-06-15T20:29Z",
    "lastModifiedDate" : "2020-09-11T15:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-8086",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.8.1",
                    "version_affected" : "<="
                  }, {
                    "version_value" : "2.9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-772"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://git.qemu.org/?p=qemu.git;a=commit;h=4ffcdef4277a91af15a3c09f7d16af072c29f3f2",
          "name" : "http://git.qemu.org/?p=qemu.git;a=commit;h=4ffcdef4277a91af15a3c09f7d16af072c29f3f2",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2017/04/25/5",
          "name" : "[oss-security] 20170425 CVE-2017-8086 Qemu: 9pfs: host memory leakage via v9pfs_list_xattr",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/98012",
          "name" : "98012",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1444781",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1444781",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/09/msg00007.html",
          "name" : "[debian-lts-announce] 20180906 [SECURITY] [DLA 1497-1] qemu security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2017-04/msg01636.html",
          "name" : "[qemu-devel] 20170410 [PULL] 9pfs: xattr: fix memory leak in v9fs_list_xattr",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201706-03",
          "name" : "GLSA-201706-03",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Memory leak in the v9fs_list_xattr function in hw/9pfs/9p-xattr.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (memory consumption) via vectors involving the orig_value variable."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.8.1"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.9.0:rc0:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.9.0:rc1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.9.0:rc2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:2.9.0:rc3:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:N/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 4.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.9,
        "impactScore" : 6.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-05-02T14:59Z",
    "lastModifiedDate" : "2020-09-10T17:28Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-8112",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.9.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-835"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2017/04/26/5",
          "name" : "[oss-security] 20170426 CVE-2017-8112 Qemu: scsi: vmw_pvscsi: infinite loop in pvscsi_log2",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/98015",
          "name" : "98015",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1445621",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1445621",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/09/msg00007.html",
          "name" : "[debian-lts-announce] 20180906 [SECURITY] [DLA 1497-1] qemu security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2017-04/msg04578.html",
          "name" : "[qemu-devel] 20170425 Re: [PATCH] vmw_pvscsi: check message ring page count at initialisation",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201706-03",
          "name" : "GLSA-201706-03",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "hw/scsi/vmw_pvscsi.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (infinite loop and CPU consumption) via the message ring page count."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.9.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:N/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 4.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.9,
        "impactScore" : 6.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-05-02T14:59Z",
    "lastModifiedDate" : "2020-09-10T17:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-8309",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.9.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "openstack",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-772"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/98302",
          "name" : "98302",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2408",
          "name" : "RHSA-2017:2408",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/09/msg00007.html",
          "name" : "[debian-lts-announce] 20180906 [SECURITY] [DLA 1497-1] qemu security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2017-04/msg05587.html",
          "name" : "[qemu-devel] 20170428 [PATCH] audio: release capture buffers",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201706-03",
          "name" : "GLSA-201706-03",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Memory leak in the audio/audio.c in QEMU (aka Quick Emulator) allows remote attackers to cause a denial of service (memory consumption) by repeatedly starting and stopping audio capture."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.9.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:10.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:11.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.8
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-05-23T04:29Z",
    "lastModifiedDate" : "2020-09-10T17:20Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-8379",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.9.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "openstack",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-772"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2017/05/03/2",
          "name" : "[oss-security] 20170503 CVE-2017-8379 Qemu: input: host memory lekage via keyboard",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/98277",
          "name" : "98277",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2017:2408",
          "name" : "RHSA-2017:2408",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/09/msg00007.html",
          "name" : "[debian-lts-announce] 20180906 [SECURITY] [DLA 1497-1] qemu security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2017-04/msg05599.html",
          "name" : "[qemu-devel] 20170428 [PATCH] input: limit kbd queue depth",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201706-03",
          "name" : "GLSA-201706-03",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Memory leak in the keyboard input event handlers support in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption) by rapidly generating large keyboard events."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.9.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:10.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:11.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:N/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 4.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.9,
        "impactScore" : 6.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-05-23T04:29Z",
    "lastModifiedDate" : "2020-09-10T17:19Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-8872",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "xmlsoft",
            "product" : {
              "product_data" : [ {
                "product_name" : "libxml2",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.9.4",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-125"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://bugzilla.gnome.org/show_bug.cgi?id=775200",
          "name" : "https://bugzilla.gnome.org/show_bug.cgi?id=775200",
          "refsource" : "MISC",
          "tags" : [ "Issue Tracking" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2020/09/msg00009.html",
          "name" : "[debian-lts-announce] 20200909 [SECURITY] [DLA 2369-1] libxml2 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The htmlParseTryOrFinish function in HTMLparser.c in libxml2 2.9.4 allows attackers to cause a denial of service (buffer over-read) or information disclosure."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:xmlsoft:libxml2:2.9.4:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.1,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 5.2
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.4
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2017-05-10T05:29Z",
    "lastModifiedDate" : "2020-09-10T01:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2017-9130",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "freeware_advanced_audio_coder_project",
            "product" : {
              "product_data" : [ {
                "product_name" : "freeware_advanced_audio_coder",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.28",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-125"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.exploit-db.com/exploits/42207/",
          "name" : "42207",
          "refsource" : "EXPLOIT-DB",
          "tags" : [ "Exploit", "Third Party Advisory", "VDB Entry" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The faacEncOpen function in libfaac/frame.c in Freeware Advanced Audio Coder (FAAC) 1.28 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted wav file."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:freeware_advanced_audio_coder_project:freeware_advanced_audio_coder:1.28:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2017-06-21T07:29Z",
    "lastModifiedDate" : "2020-09-09T15:11Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-0286",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "ios_xr",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.5.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-755"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/104083",
          "name" : "104083",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040827",
          "name" : "1040827",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180502-iosxr",
          "name" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180502-iosxr",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the netconf interface of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on affected system. The vulnerability is due to improper handling of malformed requests processed by the netconf process. An attacker could exploit this vulnerability by sending malicious requests to the affected software. An exploit could allow the attacker to cause the targeted process to restart, resulting in a DoS condition on the affected system. Cisco Bug IDs: CSCvg95792."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:cisco:ios_xr:6.3.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:cisco:ios_xr:6.3.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:cisco:ios_xr:6.5.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-05-02T22:29Z",
    "lastModifiedDate" : "2020-09-09T15:10Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-10323",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "linux",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux_kernel",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "4.16.3",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-476"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/103959",
          "name" : "103959",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.kernel.org/show_bug.cgi?id=199423",
          "name" : "https://bugzilla.kernel.org/show_bug.cgi?id=199423",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Issue Tracking", "Vendor Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3752-1/",
          "name" : "USN-3752-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3752-2/",
          "name" : "USN-3752-2",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3752-3/",
          "name" : "USN-3752-3",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3754-1/",
          "name" : "USN-3754-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/4486-1/",
          "name" : "USN-4486-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4188",
          "name" : "DSA-4188",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.spinics.net/lists/linux-xfs/msg17254.html",
          "name" : "https://www.spinics.net/lists/linux-xfs/msg17254.html",
          "refsource" : "MISC",
          "tags" : [ "Patch", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The xfs_bmap_extents_to_btree function in fs/xfs/libxfs/xfs_bmap.c in the Linux kernel through 4.16.3 allows local users to cause a denial of service (xfs_bmapi_write NULL pointer dereference) via a crafted xfs image."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "4.16.3"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
          "attackVector" : "LOCAL",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "LOW",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 5.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 1.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:N/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 4.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.9,
        "impactScore" : 6.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-04-24T06:29Z",
    "lastModifiedDate" : "2020-09-08T19:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-10475",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "foxitsoftware",
            "product" : {
              "product_data" : [ {
                "product_name" : "foxit_reader",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "9.0.1.1049",
                    "version_affected" : "<="
                  } ]
                }
              }, {
                "product_name" : "phantompdf",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "9.0.1.1049",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-125"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.foxitsoftware.com/support/security-bulletins.php",
          "name" : "https://www.foxitsoftware.com/support/security-bulletins.php",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "https://zerodayinitiative.com/advisories/ZDI-18-385",
          "name" : "https://zerodayinitiative.com/advisories/ZDI-18-385",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D Light Node structures. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated structure. An attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of the current process. Was ZDI-CAN-5394."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:foxitsoftware:foxit_reader:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "9.0.1.1049"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:foxitsoftware:phantompdf:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "9.0.1.1049"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-05-17T15:29Z",
    "lastModifiedDate" : "2020-09-09T14:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-10476",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "foxitsoftware",
            "product" : {
              "product_data" : [ {
                "product_name" : "foxit_reader",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "9.0.1.1049",
                    "version_affected" : "<="
                  } ]
                }
              }, {
                "product_name" : "phantompdf",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "9.0.1.1049",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-125"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.foxitsoftware.com/support/security-bulletins.php",
          "name" : "https://www.foxitsoftware.com/support/security-bulletins.php",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "https://zerodayinitiative.com/advisories/ZDI-18-386",
          "name" : "https://zerodayinitiative.com/advisories/ZDI-18-386",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D Model Node structures. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated structure. An attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of the current process. Was ZDI-CAN-5395."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:foxitsoftware:foxit_reader:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "9.0.1.1049"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:foxitsoftware:phantompdf:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "9.0.1.1049"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-05-17T15:29Z",
    "lastModifiedDate" : "2020-09-09T14:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-10478",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "foxitsoftware",
            "product" : {
              "product_data" : [ {
                "product_name" : "foxit_reader",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "9.0.1.1049",
                    "version_affected" : "<="
                  } ]
                }
              }, {
                "product_name" : "phantompdf",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "9.0.1.1049",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-125"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.foxitsoftware.com/support/security-bulletins.php",
          "name" : "https://www.foxitsoftware.com/support/security-bulletins.php",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "https://zerodayinitiative.com/advisories/ZDI-18-388",
          "name" : "https://zerodayinitiative.com/advisories/ZDI-18-388",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D Texture Coord Dimensions objects. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of the current process. Was ZDI-CAN-5397."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:foxitsoftware:foxit_reader:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "9.0.1.1049"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:foxitsoftware:phantompdf:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "9.0.1.1049"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-05-17T15:29Z",
    "lastModifiedDate" : "2020-09-09T14:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-10479",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "foxitsoftware",
            "product" : {
              "product_data" : [ {
                "product_name" : "foxit_reader",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "9.0.1.1049",
                    "version_affected" : "<="
                  } ]
                }
              }, {
                "product_name" : "phantompdf",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "9.0.1.1049",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-125"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.foxitsoftware.com/support/security-bulletins.php",
          "name" : "https://www.foxitsoftware.com/support/security-bulletins.php",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "https://zerodayinitiative.com/advisories/ZDI-18-389",
          "name" : "https://zerodayinitiative.com/advisories/ZDI-18-389",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D Key Frame structures. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated data structure. An attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of the current process. Was ZDI-CAN-5399."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:foxitsoftware:foxit_reader:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "9.0.1.1049"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:foxitsoftware:phantompdf:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "9.0.1.1049"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-05-17T15:29Z",
    "lastModifiedDate" : "2020-09-09T14:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-1048",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "jboss_enterprise_application_platform",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.1.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-116"
          }, {
            "lang" : "en",
            "value" : "CWE-22"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0478",
          "name" : "RHSA-2018:0478",
          "refsource" : "REDHAT",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0479",
          "name" : "RHSA-2018:0479",
          "refsource" : "REDHAT",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0480",
          "name" : "RHSA-2018:0480",
          "refsource" : "REDHAT",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0481",
          "name" : "RHSA-2018:0481",
          "refsource" : "REDHAT",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1534343",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1534343",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "It was found that the AJP connector in undertow, as shipped in Jboss EAP 7.1.0.GA, does not use the ALLOW_ENCODED_SLASH option and thus allow the the slash / anti-slash characters encoded in the url which may lead to path traversal and result in the information disclosure of arbitrary local files."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:jboss_enterprise_application_platform:7.1.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : true,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-01-24T23:29Z",
    "lastModifiedDate" : "2020-09-09T14:52Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-1050",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "samba",
            "product" : {
              "product_data" : [ {
                "product_name" : "samba",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "4.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.12.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.12.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.12.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.12.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.12.5",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-476"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/103387",
          "name" : "103387",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040493",
          "name" : "1040493",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1860",
          "name" : "RHSA-2018:1860",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1883",
          "name" : "RHSA-2018:1883",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2612",
          "name" : "RHSA-2018:2612",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2613",
          "name" : "RHSA-2018:2613",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3056",
          "name" : "RHSA-2018:3056",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1538771",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1538771",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/03/msg00024.html",
          "name" : "[debian-lts-announce] 20180327 [SECURITY] [DLA 1320-1] samba security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2019/04/msg00013.html",
          "name" : "[debian-lts-announce] 20190409 [SECURITY] [DLA 1754-1] samba security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201805-07",
          "name" : "GLSA-201805-07",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180313-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180313-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbns03834en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbns03834en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3595-1/",
          "name" : "USN-3595-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3595-2/",
          "name" : "USN-3595-2",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4135",
          "name" : "DSA-4135",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.samba.org/samba/security/CVE-2018-1050.html",
          "name" : "https://www.samba.org/samba/security/CVE-2018-1050.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Mitigation", "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "All versions of Samba from 4.0.0 onwards are vulnerable to a denial of service attack when the RPC spoolss service is configured to be run as an external daemon. Missing input sanitization checks on some of the input parameters to spoolss RPC calls could cause the print spooler service to crash."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:lts:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "4.0.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:A/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "ADJACENT_NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 3.3
        },
        "severity" : "LOW",
        "exploitabilityScore" : 6.5,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-03-13T16:29Z",
    "lastModifiedDate" : "2020-09-09T14:53Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-1057",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "samba",
            "product" : {
              "product_data" : [ {
                "product_name" : "samba",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "4.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.1.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.2.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.3.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.4.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.5.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.6.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.7.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.8.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.9.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.10.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.11.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.12.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.12.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.12.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.12.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.12.5",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-863"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/103382",
          "name" : "103382",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040494",
          "name" : "1040494",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1553553",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1553553",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2019/04/msg00013.html",
          "name" : "[debian-lts-announce] 20190409 [SECURITY] [DLA 1754-1] samba security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201805-07",
          "name" : "GLSA-201805-07",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180313-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180313-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3595-1/",
          "name" : "USN-3595-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4135",
          "name" : "DSA-4135",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.samba.org/samba/security/CVE-2018-1057.html",
          "name" : "https://www.samba.org/samba/security/CVE-2018-1057.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Mitigation", "Vendor Advisory" ]
        }, {
          "url" : "https://www.synology.com/support/security/Synology_SA_18_08",
          "name" : "https://www.synology.com/support/security/Synology_SA_18_08",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "On a Samba 4 AD DC the LDAP server in all versions of Samba from 4.0.0 onwards incorrectly validates permissions to modify passwords over LDAP allowing authenticated users to change any other users' passwords, including administrative users and privileged service accounts (eg Domain Controllers)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "4.0.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.5
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-03-13T16:29Z",
    "lastModifiedDate" : "2020-09-09T14:54Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-1100",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "zsh",
            "product" : {
              "product_data" : [ {
                "product_name" : "zsh",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.4.2",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-787"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1932",
          "name" : "RHSA-2018:1932",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3073",
          "name" : "RHSA-2018:3073",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1563395",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1563395",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201805-10",
          "name" : "GLSA-201805-10",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://sourceforge.net/p/zsh/code/ci/31f72205630687c1cef89347863aab355296a27f/",
          "name" : "https://sourceforge.net/p/zsh/code/ci/31f72205630687c1cef89347863aab355296a27f/",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch" ]
        }, {
          "url" : "https://usn.ubuntu.com/3764-1/",
          "name" : "USN-3764-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "zsh through version 5.4.2 is vulnerable to a stack-based buffer overflow in the utils.c:checkmailpath function. A local attacker could exploit this to execute arbitrary code in the context of another user."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:zsh:zsh:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "5.4.2"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-04-11T19:29Z",
    "lastModifiedDate" : "2020-09-09T14:55Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-1108",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "linux",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux_kernel",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "4.16",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-330"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/104055",
          "name" : "104055",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1108",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1108",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3718-1/",
          "name" : "USN-3718-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3718-2/",
          "name" : "USN-3718-2",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3752-1/",
          "name" : "USN-3752-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3752-2/",
          "name" : "USN-3752-2",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3752-3/",
          "name" : "USN-3752-3",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4188",
          "name" : "DSA-4188",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "kernel drivers before version 4.17-rc1 are vulnerable to a weakness in the Linux kernel's implementation of random seed data. Programs, early in the boot sequence, could use the data allocated for the seed before it was sufficiently generated."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "4.16"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-05-21T21:29Z",
    "lastModifiedDate" : "2020-09-09T14:58Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-1115",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "postgresql",
            "product" : {
              "product_data" : [ {
                "product_name" : "postgresql",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.01",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.02",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.08",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.09",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "6.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.27",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.28",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.30",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.1.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.2.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.3.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.4.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.2.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.3.25",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4-0.5.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.24",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4.26",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5.23",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.6.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.6.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.6.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.6.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.6.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.3",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "leap",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "15.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-732"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2020-08/msg00043.html",
          "name" : "openSUSE-SU-2020:1227",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/104285",
          "name" : "104285",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2565",
          "name" : "RHSA-2018:2565",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2566",
          "name" : "RHSA-2018:2566",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1115",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1115",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://git.postgresql.org/gitweb/?p=postgresql.git;a=commitdiff;h=7b34740",
          "name" : "https://git.postgresql.org/gitweb/?p=postgresql.git;a=commitdiff;h=7b34740",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201810-08",
          "name" : "GLSA-201810-08",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "postgresql before versions 10.4, 9.6.9 is vulnerable in the adminpack extension, the pg_catalog.pg_logfile_rotate() function doesn't follow the same ACLs than pg_rorate_logfile. If the adminpack is added to a database, an attacker able to connect to it could exploit this to force log rotation."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "9.6.9"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:postgresql:postgresql:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "10.0",
          "versionEndExcluding" : "10.4"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:leap:15.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.4
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 4.9,
        "acInsufInfo" : true,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-05-10T19:29Z",
    "lastModifiedDate" : "2020-09-09T14:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-11212",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "ijg",
            "product" : {
              "product_data" : [ {
                "product_name" : "libjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "9a",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "netapp",
            "product" : {
              "product_data" : [ {
                "product_name" : "oncommand_unified_manager",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "oncommand_workflow_automation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "snapmanager",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "leap",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "15.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-369"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2019-03/msg00028.html",
          "name" : "openSUSE-SU-2019:0346",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00059.html",
          "name" : "openSUSE-SU-2019:1439",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00013.html",
          "name" : "openSUSE-SU-2019:1500",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://www.securityfocus.com/bid/106583",
          "name" : "106583",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2019:0469",
          "name" : "RHSA-2019:0469",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2019:0472",
          "name" : "RHSA-2019:0472",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2019:0473",
          "name" : "RHSA-2019:0473",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2019:0474",
          "name" : "RHSA-2019:0474",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2019:0640",
          "name" : "RHSA-2019:0640",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2019:1238",
          "name" : "RHSA-2019:1238",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2019:2052",
          "name" : "RHSA-2019:2052",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://github.com/ChijinZ/security_advisories/tree/master/libjpeg-v9a",
          "name" : "https://github.com/ChijinZ/security_advisories/tree/master/libjpeg-v9a",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2019/01/msg00015.html",
          "name" : "[debian-lts-announce] 20190122 [SECURITY] [DLA 1638-1] libjpeg-turbo security update",
          "refsource" : "MLIST",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20190118-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20190118-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03958en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03958en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3706-1/",
          "name" : "USN-3706-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3706-2/",
          "name" : "USN-3706-2",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html",
          "name" : "https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An issue was discovered in libjpeg 9a. The alloc_sarray function in jmemmgr.c allows remote attackers to cause a denial of service (divide-by-zero error) via a crafted file."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:ijg:libjpeg:9a:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:netapp:oncommand_unified_manager:*:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:netapp:oncommand_unified_manager:*:*:*:*:*:windows:*:*",
          "versionStartIncluding" : "7.3"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:netapp:oncommand_unified_manager:*:*:*:*:*:vmware_vsphere:*:*",
          "versionStartIncluding" : "9.4"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:netapp:oncommand_workflow_automation:*:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:netapp:snapmanager:*:*:*:*:*:oracle:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:netapp:snapmanager:*:*:*:*:*:sap:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update192:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:11.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:8.0:update_191:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:leap:15.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-05-16T17:29Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-1124",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "procps-ng_project",
            "product" : {
              "product_data" : [ {
                "product_name" : "procps-ng",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.14",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "leap",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "15.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-787"
          }, {
            "lang" : "en",
            "value" : "CWE-190"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00058.html",
          "name" : "openSUSE-SU-2019:2376",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00059.html",
          "name" : "openSUSE-SU-2019:2379",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://seclists.org/oss-sec/2018/q2/122",
          "name" : "[oss-security] 20180517 Qualys Security Advisory - Procps-ng Audit Report",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/104214",
          "name" : "104214",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041057",
          "name" : "1041057",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1700",
          "name" : "RHSA-2018:1700",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1777",
          "name" : "RHSA-2018:1777",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1820",
          "name" : "RHSA-2018:1820",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2267",
          "name" : "RHSA-2018:2267",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2268",
          "name" : "RHSA-2018:2268",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2019:1944",
          "name" : "RHSA-2019:1944",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2019:2401",
          "name" : "RHSA-2019:2401",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1124",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1124",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10241",
          "name" : "https://kc.mcafee.com/corporate/index?page=content&id=SB10241",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/05/msg00021.html",
          "name" : "[debian-lts-announce] 20180531 [SECURITY] [DLA 1390-1] procps security update",
          "refsource" : "MLIST",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201805-14",
          "name" : "GLSA-201805-14",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3658-1/",
          "name" : "USN-3658-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3658-2/",
          "name" : "USN-3658-2",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4208",
          "name" : "DSA-4208",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.exploit-db.com/exploits/44806/",
          "name" : "44806",
          "refsource" : "EXPLOIT-DB",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://www.qualys.com/2018/05/17/procps-ng-audit-report-advisory.txt",
          "name" : "https://www.qualys.com/2018/05/17/procps-ng-audit-report-advisory.txt",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "procps-ng before version 3.3.15 is vulnerable to multiple integer overflows leading to a heap corruption in file2strvec function. This allows a privilege escalation for a local attacker who can create entries in procfs by starting processes, which could result in crashes or arbitrary code execution in proc utilities run by other users."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:procps-ng_project:procps-ng:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "3.3.15"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:leap:15.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:leap:15.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.6
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.9,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-05-23T13:29Z",
    "lastModifiedDate" : "2020-09-09T14:58Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-1125",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "procps-ng_project",
            "product" : {
              "product_data" : [ {
                "product_name" : "procps-ng",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.14",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "leap",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "15.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-787"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00058.html",
          "name" : "openSUSE-SU-2019:2376",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00059.html",
          "name" : "openSUSE-SU-2019:2379",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://seclists.org/oss-sec/2018/q2/122",
          "name" : "[oss-security] 20180517 Qualys Security Advisory - Procps-ng Audit Report",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/104214",
          "name" : "104214",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1125",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-1125",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/05/msg00021.html",
          "name" : "[debian-lts-announce] 20180531 [SECURITY] [DLA 1390-1] procps security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3658-1/",
          "name" : "USN-3658-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3658-3/",
          "name" : "USN-3658-3",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4208",
          "name" : "DSA-4208",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.qualys.com/2018/05/17/procps-ng-audit-report-advisory.txt",
          "name" : "https://www.qualys.com/2018/05/17/procps-ng-audit-report-advisory.txt",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "procps-ng before version 3.3.15 is vulnerable to a stack buffer overflow in pgrep. This vulnerability is mitigated by FORTIFY, as it involves strncat() to a stack-allocated string. When pgrep is compiled with FORTIFY (as on Red Hat Enterprise Linux and Fedora), the impact is limited to a crash."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:procps-ng_project:procps-ng:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "3.3.15"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:leap:15.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-05-23T14:29Z",
    "lastModifiedDate" : "2020-09-09T14:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-1165",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "joyent",
            "product" : {
              "product_data" : [ {
                "product_name" : "smartos",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "20170803",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "solaris",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "zfs_storage_appliance",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.8",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-787"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://help.joyent.com/hc/en-us/articles/360000124928",
          "name" : "https://help.joyent.com/hc/en-us/articles/360000124928",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://www.oracle.com/security-alerts/cpuapr2020.html",
          "name" : "N/A",
          "refsource" : "N/A",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://zerodayinitiative.com/advisories/ZDI-18-158",
          "name" : "https://zerodayinitiative.com/advisories/ZDI-18-158",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "This vulnerability allows local attackers to escalate privileges on vulnerable installations of Joyent SmartOS release-20170803-20170803T064301Z. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the SMB_IOC_SVCENUM IOCTL. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length, heap-based buffer. An attacker can leverage this vulnerability to execute code under the context of the host OS. Was ZDI-CAN-4983."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:joyent:smartos:20170803:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:solaris:11:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:oracle:zfs_storage_appliance:8.8:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 6.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.4,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-02-21T14:29Z",
    "lastModifiedDate" : "2020-09-09T14:52Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-11806",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.12.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "openstack",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "virtualization",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "4.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.7",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-787"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2018/06/07/1",
          "name" : "[oss-security] 20180607 CVE-2018-11806 Qemu: slirp: heap buffer overflow while reassembling fragmented datagrams",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/104400",
          "name" : "104400",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2462",
          "name" : "RHSA-2018:2462",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2762",
          "name" : "RHSA-2018:2762",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2822",
          "name" : "RHSA-2018:2822",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2887",
          "name" : "RHSA-2018:2887",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2019:2892",
          "name" : "RHSA-2019:2892",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1586245",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1586245",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2019/05/msg00010.html",
          "name" : "[debian-lts-announce] 20190509 [SECURITY] [DLA 1781-1] qemu security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2018-06/msg01012.html",
          "name" : "[qemu-devel] 20180605 [PATCH 1/2] slirp: correct size computation while concatenating mbuf",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://seclists.org/bugtraq/2019/May/76",
          "name" : "20190531 [SECURITY] [DSA 4454-1] qemu security update",
          "refsource" : "BUGTRAQ",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3826-1/",
          "name" : "USN-3826-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2019/dsa-4454",
          "name" : "DSA-4454",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.zerodayinitiative.com/advisories/ZDI-18-567/",
          "name" : "https://www.zerodayinitiative.com/advisories/ZDI-18-567/",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "m_cat in slirp/mbuf.c in Qemu has a heap-based buffer overflow via incoming fragmented datagrams."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.12.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:9.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:10.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:12.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:openstack:13.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_eus:7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:redhat:virtualization:4.0:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-06-13T16:29Z",
    "lastModifiedDate" : "2020-09-10T17:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-12191",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "intel",
            "product" : {
              "product_data" : [ {
                "product_name" : "converged_security_management_engine_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.8.55",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.11.55",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.22.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.10",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "server_platform_services_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "4.00.04.367",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.00.04.382",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.01.00.152.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.01.02.173",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "trusted_execution_engine_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.50",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "4.0.5",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-119"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://security.netapp.com/advisory/ntap-20190318-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20190318-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03914en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03914en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00185.html",
          "name" : "https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00185.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Bounds check in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services before versions 4.00.04.383 or SPS 4.01.02.174, or Intel(R) TXE before versions 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially execute arbitrary code via physical access."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "11.0",
          "versionEndExcluding" : "11.8.60"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "11.10",
          "versionEndExcluding" : "11.11.60"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "11.20",
          "versionEndExcluding" : "11.22.60"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "12.0.0",
          "versionEndExcluding" : "12.0.20"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:intel:server_platform_services_firmware:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "4.00.04.367",
          "versionEndExcluding" : "4.00.04.383"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:intel:server_platform_services_firmware:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "4.01.00.152.0",
          "versionEndExcluding" : "4.01.02.174"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:intel:trusted_execution_engine_firmware:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "3.0",
          "versionEndExcluding" : "3.1.60"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:intel:trusted_execution_engine_firmware:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "4.0",
          "versionEndExcluding" : "4.0.10"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2019-03-14T20:29Z",
    "lastModifiedDate" : "2020-09-10T13:19Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-12463",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "fortify_software_security_center",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "17.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-611"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securitytracker.com/id/1041286",
          "name" : "1041286",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://softwaresupport.softwaregrp.com/document/-/facetsearch/document/KM03201563",
          "name" : "https://softwaresupport.softwaregrp.com/document/-/facetsearch/document/KM03201563",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://www.exploit-db.com/exploits/45027/",
          "name" : "45027",
          "refsource" : "EXPLOIT-DB",
          "tags" : [ "Exploit", "Third Party Advisory", "VDB Entry" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An XML external entity (XXE) vulnerability in Fortify Software Security Center (SSC), version 17.1, 17.2, 18.1 allows remote unauthenticated users to read arbitrary files or conduct server-side request forgery (SSRF) attacks via a crafted DTD in an XML request."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:fortify_software_security_center:17.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:fortify_software_security_center:17.2:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:fortify_software_security_center:18.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-07-12T16:29Z",
    "lastModifiedDate" : "2020-09-16T13:08Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-12475",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "open_build_service",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-610"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://bugzilla.suse.com/show_bug.cgi?id=1107821",
          "name" : "https://bugzilla.suse.com/show_bug.cgi?id=1107821",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A Externally Controlled Reference to a Resource in Another Sphere vulnerability in obs-service-download_files of openSUSE Open Build Service allows authenticated users to generate HTTP request against internal networks and potentially downloading data that is exposed there. This issue affects: openSUSE Open Build Service ."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:opensuse:open_build_service:-:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.5
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 4.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-01T12:15Z",
    "lastModifiedDate" : "2020-09-10T16:39Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-12540",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "eclipse",
            "product" : {
              "product_data" : [ {
                "product_name" : "vert.x",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.5.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-352"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2371",
          "name" : "RHSA-2018:2371",
          "refsource" : "REDHAT",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://bugs.eclipse.org/bugs/show_bug.cgi?id=536948",
          "name" : "https://bugs.eclipse.org/bugs/show_bug.cgi?id=536948",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Vendor Advisory" ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r10aef585c521f8ef603f5831f9d97a27d920624025131da950e0c62f@%3Ccommits.pulsar.apache.org%3E",
          "name" : "[pulsar-commits] 20200908 [GitHub] [pulsar] wolfstudy closed issue #7931: CVE-2018-12540 pulsar use of io.vertx-web.jar vertx 3.4.1",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r3fffda8e947edaa359152c8dc4c4ea9c96fd8ced1999bbce92bc6b25@%3Ccommits.pulsar.apache.org%3E",
          "name" : "[pulsar-commits] 20200830 [GitHub] [pulsar] wolfstudy commented on issue #7931: CVE-2018-12540 pulsar use of io.vertx-web.jar vertx 3.4.1",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r59482ebed302aa49ac7e0c51737499746b0d086fcdeb8f90e705951f@%3Ccommits.pulsar.apache.org%3E",
          "name" : "[pulsar-commits] 20200828 [GitHub] [pulsar] klwilson227 opened a new issue #7931: CVE-2018-12540 pulsar use of io.vertx-web.jar vertx 3.4.1",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/rc5b4ae8a7caae6d3d5b3266cb050823b96dd62b30718b90b778d3d8b@%3Ccommits.pulsar.apache.org%3E",
          "name" : "[pulsar-commits] 20200830 [GitHub] [pulsar] codelipenghui commented on issue #7931: CVE-2018-12540 pulsar use of io.vertx-web.jar vertx 3.4.1",
          "refsource" : "MLIST",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "In version from 3.0.0 to 3.5.2 of Eclipse Vert.x, the CSRFHandler do not assert that the XSRF Cookie matches the returned XSRF header/form parameter. This allows replay attacks with previously issued tokens which are not expired yet."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:eclipse:vert.x:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "3.0.0",
          "versionEndIncluding" : "3.5.2"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.8,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-07-12T14:29Z",
    "lastModifiedDate" : "2020-09-08T10:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-1285",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "apache",
            "product" : {
              "product_data" : [ {
                "product_name" : "log4net",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.0.8",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-611"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://issues.apache.org/jira/browse/LOG4NET-575",
          "name" : "https://issues.apache.org/jira/browse/LOG4NET-575",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r00b16ac5e0bbf7009a0d167ed58f3f94d0033b0f4b3e3d5025cc4872@%3Cdev.logging.apache.org%3E",
          "name" : "[logging-dev] 20200906 [VOTE] [log4net] Release 2.0.10",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r33564de316d4e4ba0fea1d4d079e62cde1ffe64369c1157243d840d9@%3Cdev.logging.apache.org%3E",
          "name" : "[logging-dev] 20200525 [CVE-2018-1285] XXE vulnerability in Apache log4net",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r6543acafca3e2d24ff4b0c364a91540cb9378977ffa8d37a03ab4b0f@%3Cdev.logging.apache.org%3E",
          "name" : "[logging-dev] 20200617 Re: [CVE-2018-1285] XXE vulnerability in Apache log4net",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r7ab6b6e702f11a6f77b0db2af2d5e5532f56ae4b99b5fe73c5200b6a@%3Cdev.logging.apache.org%3E",
          "name" : "[logging-dev] 20200730 Re: [CVE-2018-1285] XXE vulnerability in Apache log4net",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r9de86a185575e6c5f92e2a70a1d2e2e9514dc4341251577aac8e3866@%3Cdev.logging.apache.org%3E",
          "name" : "[logging-dev] 20200525 Re: [CVE-2018-1285] XXE vulnerability in Apache log4net",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/rd2d72a017e238d1f345f9d14e075c81be16fc68a41c9e9ad9e29a732@%3Cdev.logging.apache.org%3E",
          "name" : "[logging-dev] 20200826 Re: log4net.dll - does 2.0.9 fix CVE-2018-1285",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/rdbac24c945ca5c69cd5348b5ac023bc625768f653335de146e09ae2d@%3Cdev.logging.apache.org%3E",
          "name" : "[logging-dev] 20200826 log4net.dll - does 2.0.9 fix CVE-2018-1285",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/reab1c277c95310bad1038255e0757857b2fbe291411b4fa84552028a%40%3Cdev.logging.apache.org%3E",
          "name" : "https://lists.apache.org/thread.html/reab1c277c95310bad1038255e0757857b2fbe291411b4fa84552028a%40%3Cdev.logging.apache.org%3E",
          "refsource" : "MISC",
          "tags" : [ "Mailing List", "Vendor Advisory" ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/M2U233HVAQDSZ2PRG4XSGDASLY3J6ALH/",
          "name" : "FEDORA-2020-cfc319e067",
          "refsource" : "FEDORA",
          "tags" : [ ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/VKL2LPINAI6BCMXOH4V4HVHGLUXIWOFO/",
          "name" : "FEDORA-2020-73d380e9b9",
          "refsource" : "FEDORA",
          "tags" : [ ]
        }, {
          "url" : "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/VT2DNNSW7C7FNK3MA3SLEUHGW5USYZKE/",
          "name" : "FEDORA-2020-847775bf79",
          "refsource" : "FEDORA",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Apache log4net versions before 2.0.10 do not disable XML external entities when parsing log4net configuration files. This allows for XXE-based attacks in applications that accept attacker-controlled log4net configuration files."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:apache:log4net:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.0.8"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-05-11T17:15Z",
    "lastModifiedDate" : "2020-09-14T22:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-12923",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "bwssystems",
            "product" : {
              "product_data" : [ {
                "product_name" : "ha_bridge",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-200"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.seebug.org/vuldb/ssvid-97373",
          "name" : "https://www.seebug.org/vuldb/ssvid-97373",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "BWS Systems HA-Bridge devices allow remote attackers to obtain potentially sensitive information via a direct request for the #!/system URI."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:bwssystems:ha_bridge:-:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-06-28T11:29Z",
    "lastModifiedDate" : "2020-09-16T13:13Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-13785",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "libpng",
            "product" : {
              "product_data" : [ {
                "product_name" : "libpng",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.34",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-190"
          }, {
            "lang" : "en",
            "value" : "CWE-369"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/105599",
          "name" : "105599",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041889",
          "name" : "1041889",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3000",
          "name" : "RHSA-2018:3000",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3001",
          "name" : "RHSA-2018:3001",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3002",
          "name" : "RHSA-2018:3002",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3003",
          "name" : "RHSA-2018:3003",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3007",
          "name" : "RHSA-2018:3007",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3008",
          "name" : "RHSA-2018:3008",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3533",
          "name" : "RHSA-2018:3533",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3534",
          "name" : "RHSA-2018:3534",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3671",
          "name" : "RHSA-2018:3671",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3672",
          "name" : "RHSA-2018:3672",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3779",
          "name" : "RHSA-2018:3779",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3852",
          "name" : "RHSA-2018:3852",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/glennrp/libpng/commit/8a05766cb74af05c04c53e6c9d60c13fc4d59bf2",
          "name" : "https://github.com/glennrp/libpng/commit/8a05766cb74af05c04c53e6c9d60c13fc4d59bf2",
          "refsource" : "MISC",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201908-10",
          "name" : "GLSA-201908-10",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://sourceforge.net/p/libpng/bugs/278/",
          "name" : "https://sourceforge.net/p/libpng/bugs/278/",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3712-1/",
          "name" : "USN-3712-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "In libpng 1.6.34, a wrong calculation of row_factor in the png_check_chunk_length function (pngrutil.c) may trigger an integer overflow and resultant divide-by-zero while processing a crafted PNG file, leading to a denial of service."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:libpng:libpng:1.6.34:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:11.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:11.0.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-07-09T13:29Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-13792",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "abbyy",
            "product" : {
              "product_data" : [ {
                "product_name" : "flexicapture",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.1.263",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.1.267",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.1.282",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.1.292",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.1.367",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.1.428",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.1.475",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.1.516",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-89"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.abbyydownloads.com/fc12/ReleaseNotes_FC12_R2_U6_1299.29_build_12.0.2.1420.pdf",
          "name" : "http://www.abbyydownloads.com/fc12/ReleaseNotes_FC12_R2_U6_1299.29_build_12.0.2.1420.pdf",
          "refsource" : "CONFIRM",
          "tags" : [ "Release Notes", "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Multiple SQL injection vulnerabilities in the monitoring feature in the HTTP API in ABBYY FlexiCapture before 12 Release 2 allow an attacker to execute arbitrary SQL commands via the mask, sortOrder, filter, or Order parameter."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:abbyy:flexicapture:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "12.0",
          "versionEndExcluding" : "12.0.2.1194"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2019-02-10T02:29Z",
    "lastModifiedDate" : "2020-09-10T13:20Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-13794",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "catimg_project",
            "product" : {
              "product_data" : [ {
                "product_name" : "catimg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.4.0",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-787"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://github.com/posva/catimg/issues/34",
          "name" : "https://github.com/posva/catimg/issues/34",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A heap-based buffer overflow exists in stbi__bmp_load_cont in stb_image.h in catimg 2.4.0."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:catimg_project:catimg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.4.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "acInsufInfo" : true,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-07-09T21:29Z",
    "lastModifiedDate" : "2020-09-14T14:24Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-13903",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qualcomm",
            "product" : {
              "product_data" : [ {
                "product_name" : "apq8053_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "mdm9205_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "mdm9206_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8909w_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8917_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8920_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8937_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8940_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8953_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm450_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm8150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-476"
          }, {
            "lang" : "en",
            "value" : "CWE-362"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-bulletin",
          "name" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-bulletin",
          "refsource" : "CONFIRM",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-security-bulletin",
          "name" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-security-bulletin",
          "refsource" : "MISC",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "u'Error in UE due to race condition in EPCO handling' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8053, MDM9205, MDM9206, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, SDM450, SM8150"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:apq8053_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:apq8053:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:mdm9205_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:mdm9205:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:mdm9206_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:mdm9206:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8909w_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8909w:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8917_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8917:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8920_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8920:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8937_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8937:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8940_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8940:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8953_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8953:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm450_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm450:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sm8150_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sm8150:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-08T10:15Z",
    "lastModifiedDate" : "2020-09-11T15:41Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-13980",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "zeta-producer",
            "product" : {
              "product_data" : [ {
                "product_name" : "zeta_producer",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.5.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "12.5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "13.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.2.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-22"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://packetstormsecurity.com/files/148537/Zeta-Producer-Desktop-CMS-14.2.0-Code-Execution-File-Disclosure.html",
          "name" : "http://packetstormsecurity.com/files/148537/Zeta-Producer-Desktop-CMS-14.2.0-Code-Execution-File-Disclosure.html",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://www.exploit-db.com/exploits/45016/",
          "name" : "45016",
          "refsource" : "EXPLOIT-DB",
          "tags" : [ "Exploit", "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://www.sec-consult.com/en/blog/advisories/remote-code-execution-local-file-disclosure-zeta-producer-desktop-cms/",
          "name" : "https://www.sec-consult.com/en/blog/advisories/remote-code-execution-local-file-disclosure-zeta-producer-desktop-cms/",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The websites that were built from Zeta Producer Desktop CMS before 14.2.1 are vulnerable to unauthenticated file disclosure if the plugin \"filebrowser\" is installed, because of assets/php/filebrowser/filebrowser.main.php?file=../ directory traversal."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:zeta-producer:zeta_producer:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "14.2.1"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.1
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-07-16T14:29Z",
    "lastModifiedDate" : "2020-09-16T13:07Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-14048",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "libpng",
            "product" : {
              "product_data" : [ {
                "product_name" : "libpng",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.34",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://packetstormsecurity.com/files/152561/Slackware-Security-Advisory-libpng-Updates.html",
          "name" : "http://packetstormsecurity.com/files/152561/Slackware-Security-Advisory-libpng-Updates.html",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch" ]
        }, {
          "url" : "https://github.com/fouzhe/security/tree/master/libpng",
          "name" : "https://github.com/fouzhe/security/tree/master/libpng",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/glennrp/libpng/issues/238",
          "name" : "https://github.com/glennrp/libpng/issues/238",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://seclists.org/bugtraq/2019/Apr/30",
          "name" : "20190417 [slackware-security] libpng (SSA:2019-107-01)",
          "refsource" : "BUGTRAQ",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201908-02",
          "name" : "GLSA-201908-02",
          "refsource" : "GENTOO",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An issue has been found in libpng 1.6.34. It is a SEGV in the function png_free_data in png.c, related to the recommended error handling for png_read_image."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:libpng:libpng:1.6.34:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:11.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:11.0.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-07-13T16:29Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-14404",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "xmlsoft",
            "product" : {
              "product_data" : [ {
                "product_name" : "libxml2",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.9.8",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-476"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://access.redhat.com/errata/RHSA-2019:1543",
          "name" : "RHSA-2019:1543",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=901817",
          "name" : "https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=901817",
          "refsource" : "MISC",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1595985",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=1595985",
          "refsource" : "MISC",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://gitlab.gnome.org/GNOME/libxml2/issues/10",
          "name" : "https://gitlab.gnome.org/GNOME/libxml2/issues/10",
          "refsource" : "MISC",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/09/msg00035.html",
          "name" : "[debian-lts-announce] 20180927 [SECURITY] [DLA 1524-1] libxml2 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2020/09/msg00009.html",
          "name" : "[debian-lts-announce] 20200909 [SECURITY] [DLA 2369-1] libxml2 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20190719-0002/",
          "name" : "https://security.netapp.com/advisory/ntap-20190719-0002/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3739-1/",
          "name" : "USN-3739-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3739-2/",
          "name" : "USN-3739-2",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A NULL pointer dereference vulnerability exists in the xpath.c:xmlXPathCompOpEval() function of libxml2 through 2.9.8 when parsing an invalid XPath expression in the XPATH_OP_AND or XPATH_OP_OR case. Applications processing untrusted XSL format inputs with the use of the libxml2 library may be vulnerable to a denial of service attack due to a crash of the application."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:-:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:xmlsoft:libxml2:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.9.8"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : true,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-07-19T13:29Z",
    "lastModifiedDate" : "2020-09-10T01:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-14423",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.3.0",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-369"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://github.com/uclouvain/openjpeg/issues/1123",
          "name" : "https://github.com/uclouvain/openjpeg/issues/1123",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/12/msg00013.html",
          "name" : "[debian-lts-announce] 20181222 [SECURITY] [DLA 1614-1] openjpeg2 security update",
          "refsource" : "MLIST",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/4109-1/",
          "name" : "USN-4109-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2019/dsa-4405",
          "name" : "DSA-4405",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Division-by-zero vulnerabilities in the functions pi_next_pcrl, pi_next_cprl, and pi_next_rpcl in lib/openjp3d/pi.c in OpenJPEG through 2.3.0 allow remote attackers to cause a denial of service (application crash)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.3.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-07-19T19:29Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-14567",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "xmlsoft",
            "product" : {
              "product_data" : [ {
                "product_name" : "libxml2",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.9.8",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.04",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-835"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/105198",
          "name" : "105198",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://gitlab.gnome.org/GNOME/libxml2/commit/2240fbf5912054af025fb6e01e26375100275e74",
          "name" : "https://gitlab.gnome.org/GNOME/libxml2/commit/2240fbf5912054af025fb6e01e26375100275e74",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/09/msg00035.html",
          "name" : "[debian-lts-announce] 20180927 [SECURITY] [DLA 1524-1] libxml2 security update",
          "refsource" : "MLIST",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2020/09/msg00009.html",
          "name" : "[debian-lts-announce] 20200909 [SECURITY] [DLA 2369-1] libxml2 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3739-1/",
          "name" : "USN-3739-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "libxml2 2.9.8, if --with-lzma is used, allows remote attackers to cause a denial of service (infinite loop) via a crafted XML file that triggers LZMA_MEMLIMIT_ERROR, as demonstrated by xmllint, a different vulnerability than CVE-2015-8035 and CVE-2018-9251."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:xmlsoft:libxml2:2.9.8:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-08-16T20:29Z",
    "lastModifiedDate" : "2020-09-10T01:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15418",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "webex_business_suite_31",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "31.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.5.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.22",
                    "version_affected" : "="
                  }, {
                    "version_value" : "31.23",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_business_suite_32",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_business_suite_33",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "33.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "33.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "33.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "33.3",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_meetings_online",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_meetings_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.1.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-191"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/105520",
          "name" : "105520",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041795",
          "name" : "1041795",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181003-webex-rce",
          "name" : "20181003 Cisco Webex Network Recording Player and Cisco Webex Player Remote Code Execution Vulnerabilities",
          "refsource" : "CISCO",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected software improperly validates Advanced Recording Format (ARF) and Webex Recording Format (WRF) files. An attacker could exploit this vulnerability by sending a user a malicious ARF or WRF file via a link or an email attachment and persuading the user to open the file by using the affected software. A successful exploit could allow the attacker to execute arbitrary code on the affected system."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_online:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "1.3.37"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release2_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release5_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release6_patch2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release6_patch3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release6_patch4:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5.1.29:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release1_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release2_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release3_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release3_patch2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:base:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:maintenance_release1_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:maintenance_release2_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.8:base:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_business_suite_32:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "32.15.10"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_business_suite_33:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "33.5"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_business_suite_31:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "31.23.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-10-05T14:29Z",
    "lastModifiedDate" : "2020-09-14T20:20Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15419",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "webex_business_suite_32",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "32.15.10",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_business_suite_33",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "33.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "33.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "33.2",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_meetings_online",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3.37",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_meetings_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.1.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-787"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/105520",
          "name" : "105520",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041795",
          "name" : "1041795",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181003-webex-rce",
          "name" : "20181003 Cisco Webex Network Recording Player and Cisco Webex Player Remote Code Execution Vulnerabilities",
          "refsource" : "CISCO",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected software improperly validates Advanced Recording Format (ARF) and Webex Recording Format (WRF) files. An attacker could exploit this vulnerability by sending a user a malicious ARF or WRF file via a link or an email attachment and persuading the user to open the file by using the affected software. A successful exploit could allow the attacker to execute arbitrary code on the affected system."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_online:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "1.3.38"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release2_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release5_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release6_patch2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release6_patch3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release6_patch4:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5.1.29:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release1_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release2_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release3_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release3_patch2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:base:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:maintenance_release1_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:maintenance_release2_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.8:base:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_business_suite_32:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "32.15.30"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_business_suite_33:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "33.3"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-10-05T14:29Z",
    "lastModifiedDate" : "2020-09-16T14:17Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15421",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "webex_business_suite_32",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_business_suite_33",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "33.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "33.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "33.2",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_meetings_online",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_meetings_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.1.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-787"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/105374",
          "name" : "105374",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041689",
          "name" : "1041689",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180919-webex",
          "name" : "20180919 Cisco Webex Network Recording Player Remote Code Execution Vulnerabilities",
          "refsource" : "CISCO",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected software improperly validates Advanced Recording Format (ARF) and Webex Recording Format (WRF) files. An attacker could exploit this vulnerability by sending a user a malicious ARF or WRF file via a link or an email attachment and persuading the user to open the file by using the affected software. A successful exploit could allow the attacker to execute arbitrary code on the affected system."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_online:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "1.3.37"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release2_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release5_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release6_patch2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release6_patch3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release6_patch4:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5.1.29:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release1_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release2_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release3_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release3_patch2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:base:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:maintenance_release1_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:maintenance_release2_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.8:base:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_business_suite_32:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "32.15.10"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_business_suite_33:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "33.3"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-10-05T14:29Z",
    "lastModifiedDate" : "2020-09-16T14:16Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15422",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "webex_business_suite_32",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_business_suite_33",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "33.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "33.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "33.2",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_meetings_online",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_meetings_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.1.29",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-787"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/105374",
          "name" : "105374",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041689",
          "name" : "1041689",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180919-webex",
          "name" : "20180919 Cisco Webex Network Recording Player Remote Code Execution Vulnerabilities",
          "refsource" : "CISCO",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected software improperly validates Advanced Recording Format (ARF) and Webex Recording Format (WRF) files. An attacker could exploit this vulnerability by sending a user a malicious ARF or WRF file via a link or an email attachment and persuading the user to open the file by using the affected software. A successful exploit could allow the attacker to execute arbitrary code on the affected system."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_online:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "1.3.37"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release2_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release5_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release6_patch2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release6_patch3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5:maintenance_release6_patch4:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.5.1.29:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release1_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release2_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release3_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.6:maintenance_release3_patch2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:base:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:maintenance_release1_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7:maintenance_release2_patch1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.7.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:2.8:base:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_business_suite_32:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "32.15.10"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_business_suite_33:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "33.3"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 9.3
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 8.6,
        "impactScore" : 10.0,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-10-05T14:29Z",
    "lastModifiedDate" : "2020-09-16T14:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15423",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "hyperflex_hx_data_platform",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.6(1d)",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0(1a)",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-1021"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181003-hyperflex-clickjacking",
          "name" : "20181003 Cisco HyperFlex UI Clickjacking Vulnerability",
          "refsource" : "CISCO",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the web UI of Cisco HyperFlex Software could allow an unauthenticated, remote attacker to affect the integrity of a device via a clickjacking attack. The vulnerability is due to insufficient input validation of iFrame data in HTTP requests that are sent to an affected device. An attacker could exploit this vulnerability by sending crafted HTTP packets with malicious iFrame data. A successful exploit could allow the attacker to perform a clickjacking attack where the user is tricked into clicking a malicious link."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:hyperflex_hx_data_platform:2.6\\(1d\\):*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:hyperflex_hx_data_platform:3.0\\(1a\\):*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-10-05T14:29Z",
    "lastModifiedDate" : "2020-09-16T13:25Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15424",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "identity_services_engine",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.2(0.470)",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-434"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securitytracker.com/id/1041792",
          "name" : "1041792",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181003-ise-mult-vulns",
          "name" : "20181003 Multiple Vulnerabilities in Cisco Identity Services Engine",
          "refsource" : "CISCO",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device with the privileges of the web server."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:identity_services_engine:2.2\\(0.470\\):*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.5
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-10-05T14:29Z",
    "lastModifiedDate" : "2020-09-16T13:22Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15425",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "identity_services_engine",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.1(0.474)",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1(0.907)",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2(0.470)",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2(0.909)",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3(0.298)",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3(0.905)",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4(0.357)",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4(0.904)",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-502"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securitytracker.com/id/1041792",
          "name" : "1041792",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181003-ise-mult-vulns",
          "name" : "20181003 Multiple Vulnerabilities in Cisco Identity Services Engine",
          "refsource" : "CISCO",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device with the privileges of the web server."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:identity_services_engine:2.1\\(0.474\\):*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:identity_services_engine:2.1\\(0.907\\):*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:identity_services_engine:2.2\\(0.470\\):*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:identity_services_engine:2.2\\(0.909\\):*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:identity_services_engine:2.3\\(0.298\\):*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:identity_services_engine:2.3\\(0.905\\):*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:identity_services_engine:2.4\\(0.357\\):*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:identity_services_engine:2.4\\(0.904\\):*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.5
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-10-05T14:29Z",
    "lastModifiedDate" : "2020-09-16T13:17Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15429",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "hyperflex_hx_data_platform",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.6(1d)",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0(1a)",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-862"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181003-hyperflex-uda",
          "name" : "20181003 Cisco HyperFlex HX Data Platform Software Unauthorized Directory Access Vulnerability",
          "refsource" : "CISCO",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the web-based UI of Cisco HyperFlex HX Data Platform Software could allow an unauthenticated, remote attacker to access sensitive information on an affected system. The vulnerability is due to a lack of proper input and authorization of HTTP requests. An attacker could exploit this vulnerability by sending a malicious HTTP request to the web-based UI of an affected system. A successful exploit could allow the attacker to access files that may contain sensitive data."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:hyperflex_hx_data_platform:2.6\\(1d\\):*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:hyperflex_hx_data_platform:3.0\\(1a\\):*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-10-05T14:29Z",
    "lastModifiedDate" : "2020-09-16T19:13Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15431",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "webex_business_suite_32",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "32.15.10",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_meetings_online",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3.37",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "webex_meetings_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-787"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/105520",
          "name" : "105520",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041795",
          "name" : "1041795",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181003-webex-rce",
          "name" : "20181003 Cisco Webex Network Recording Player and Cisco Webex Player Remote Code Execution Vulnerabilities",
          "refsource" : "CISCO",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected software improperly validates Advanced Recording Format (ARF) and Webex Recording Format (WRF) files. An attacker could exploit this vulnerability by sending a user a malicious ARF or WRF file via a link or an email attachment and persuading the user to open the file by using the affected software. A successful exploit could allow the attacker to execute arbitrary code on the affected system."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:3.0:-:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:3.0:maintenance_release1:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_server:3.0:maintenance_release2_patch1:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_meetings_online:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "1.3.38"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:webex_business_suite_32:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "32.15.30"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 6.9
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.4,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-10-05T14:29Z",
    "lastModifiedDate" : "2020-09-16T14:14Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15437",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "advanced_malware_protection_for_endpoints",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "immunet_for_endpoints",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-400"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/105867",
          "name" : "105867",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181107-imm-dos",
          "name" : "20181107 Cisco Immunet and Cisco AMP for Endpoints System Scan Denial of Service Vulnerability",
          "refsource" : "CISCO",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://www.exploit-db.com/exploits/45829/",
          "name" : "45829",
          "refsource" : "EXPLOIT-DB",
          "tags" : [ "Exploit", "Third Party Advisory", "VDB Entry" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the system scanning component of Cisco Immunet and Cisco Advanced Malware Protection (AMP) for Endpoints running on Microsoft Windows could allow a local attacker to disable the scanning functionality of the product. This could allow executable files to be launched on the system without being analyzed for threats. The vulnerability is due to improper process resource handling. An attacker could exploit this vulnerability by gaining local access to a system running Microsoft Windows and protected by Cisco Immunet or Cisco AMP for Endpoints and executing a malicious file. A successful exploit could allow the attacker to prevent the scanning services from functioning properly and ultimately prevent the system from being protected from further intrusion."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:cisco:advanced_malware_protection_for_endpoints:-:*:*:*:*:*:*:*"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:cisco:immunet_for_endpoints:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.1
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.9,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-11-08T17:29Z",
    "lastModifiedDate" : "2020-09-16T14:13Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15448",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "registered_envelope_service",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-Other"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/105862",
          "name" : "105862",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181107-res-info-disc",
          "name" : "20181107 Cisco Registered Envelope Service Information Disclosure Vulnerability",
          "refsource" : "CISCO",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the user management functions of Cisco Registered Envelope Service could allow an unauthenticated, remote attacker to discover sensitive user information. The attacker could use this information to conduct additional reconnaissance attacks. The vulnerability is due to an insecure configuration that allows improper indexing. An attacker could exploit this vulnerability by using a search engine to look for specific data strings. A successful exploit could allow the attacker to discover certain sensitive information about the application, including usernames."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:registered_envelope_service:-:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-11-08T19:29Z",
    "lastModifiedDate" : "2020-09-16T13:27Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15450",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "prime_collaboration",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-22"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/105864",
          "name" : "105864",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181107-pca-overwrite",
          "name" : "20181107 Cisco Prime Collaboration Assurance File Overwrite Vulnerability",
          "refsource" : "CISCO",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the web-based UI of Cisco Prime Collaboration Assurance could allow an authenticated, remote attacker to overwrite files on the file system. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by using a specific UI input field to provide a custom path location. A successful exploit could allow the attacker to overwrite files on the file system."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:cisco:prime_collaboration:12.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:N/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.5
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 4.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-11-08T20:29Z",
    "lastModifiedDate" : "2020-09-16T19:12Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15453",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "email_security_appliance_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "11.0.1-401",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.1.0-131",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-787"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/106511",
          "name" : "106511",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190109-esa-dos",
          "name" : "20190109 Cisco Email Security Appliance Memory Corruption Denial of Service Vulnerability",
          "refsource" : "CISCO",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the Secure/Multipurpose Internet Mail Extensions (S/MIME) Decryption and Verification or S/MIME Public Key Harvesting features of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to cause an affected device to corrupt system memory. A successful exploit could cause the filtering process to unexpectedly reload, resulting in a denial of service (DoS) condition on the device. The vulnerability is due to improper input validation of S/MIME-signed emails. An attacker could exploit this vulnerability by sending a malicious S/MIME-signed email through a targeted device. If Decryption and Verification or Public Key Harvesting is configured, the filtering process could crash due to memory corruption and restart, resulting in a DoS condition. The software could then resume processing the same S/MIME-signed email, causing the filtering process to crash and restart again. A successful exploit could allow the attacker to cause a permanent DoS condition. This vulnerability may require manual intervention to recover the ESA."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:cisco:email_security_appliance_firmware:11.0.1-401:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:cisco:email_security_appliance_firmware:11.1.0-131:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.8
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2019-01-10T18:29Z",
    "lastModifiedDate" : "2020-09-16T14:13Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15460",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "cisco",
            "product" : {
              "product_data" : [ {
                "product_name" : "asyncos",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.1.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.1.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.1.5-102",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.2-101",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6.1-101",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.5.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.7.0-125",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.7.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.1.1-230",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.1.1-234",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.1.1-235",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.1.2-036",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.1.3-054",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.1.4-007",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.5.1-296",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.1.2",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-770"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/106507",
          "name" : "106507",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190109-esa-url-dos",
          "name" : "20190109 Cisco Email Security Appliance URL Filtering Denial of Service Vulnerability",
          "refsource" : "CISCO",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "A vulnerability in the email message filtering feature of Cisco AsyncOS Software for Cisco Email Security Appliances (ESA) could allow an unauthenticated, remote attacker to cause the CPU utilization to increase to 100 percent, causing a denial of service (DoS) condition on an affected device. The vulnerability is due to improper filtering of email messages that contain references to whitelisted URLs. An attacker could exploit this vulnerability by sending a malicious email message that contains a large number of whitelisted URLs. A successful exploit could allow the attacker to cause a sustained DoS condition that could force the affected device to stop scanning and forwarding email messages."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:cisco:asyncos:*:*:*:*:*:*:*:*",
            "versionEndExcluding" : "11.0.2-044_md"
          }, {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:cisco:asyncos:*:*:*:*:*:*:*:*",
            "versionStartIncluding" : "11.1.0",
            "versionEndExcluding" : "11.1.2-023_md"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:cisco:email_security_appliance:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.8
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2019-01-10T22:29Z",
    "lastModifiedDate" : "2020-09-16T14:14Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15631",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "odoo",
            "product" : {
              "product_data" : [ {
                "product_name" : "odoo",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.0",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://github.com/odoo/odoo/issues/32516",
          "name" : "https://github.com/odoo/odoo/issues/32516",
          "refsource" : "MISC",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://www.excellium-services.com/cert-xlm-advisory/cve-2018-15631/",
          "name" : "https://www.excellium-services.com/cert-xlm-advisory/cve-2018-15631/",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Improper access control in the Discuss App of Odoo Community 12.0 and earlier, and Odoo Enterprise 12.0 and earlier allows remote authenticated attackers to e-mail themselves arbitrary files from the database, via a crafted RPC request."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:odoo:odoo:*:*:*:*:community:*:*:*",
          "versionEndIncluding" : "12.0"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:odoo:odoo:*:*:*:*:enterprise:*:*:*",
          "versionEndIncluding" : "12.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2019-04-09T16:29Z",
    "lastModifiedDate" : "2020-09-16T19:11Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-15746",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.0.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2018/08/28/6",
          "name" : "[oss-security] 20180828 CVE-2018-15746 Qemu: seccomp: blacklist is not applied to all threads",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2019:2425",
          "name" : "RHSA-2019:2425",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2018-08/msg04892.html",
          "name" : "[qemu-devel] 20180822 [PATCH v4 4/4] seccomp: set the seccomp filter to all threads",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "qemu-seccomp.c in QEMU might allow local OS guest users to cause a denial of service (guest crash) by leveraging mishandling of the seccomp policy for threads other than the main thread."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "3.0.1"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 2.1
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-08-29T19:29Z",
    "lastModifiedDate" : "2020-09-10T17:12Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-16843",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "nginx",
            "product" : {
              "product_data" : [ {
                "product_name" : "nginx",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.9.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.11.13",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.12.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.12.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13.8",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13.9",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13.11",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.13.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.14.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.15.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.15.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.15.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.15.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.15.5",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "opensuse",
            "product" : {
              "product_data" : [ {
                "product_name" : "leap",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "15.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-400"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00035.html",
          "name" : "openSUSE-SU-2019:2120",
          "refsource" : "SUSE",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://mailman.nginx.org/pipermail/nginx-announce/2018/000220.html",
          "name" : "http://mailman.nginx.org/pipermail/nginx-announce/2018/000220.html",
          "refsource" : "MISC",
          "tags" : [ "Mailing List", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/105868",
          "name" : "105868",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1042038",
          "name" : "1042038",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3653",
          "name" : "RHSA-2018:3653",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3680",
          "name" : "RHSA-2018:3680",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3681",
          "name" : "RHSA-2018:3681",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-16843",
          "name" : "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-16843",
          "refsource" : "CONFIRM",
          "tags" : [ "Issue Tracking", "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3812-1/",
          "name" : "USN-3812-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4335",
          "name" : "DSA-4335",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "nginx before versions 1.15.6 and 1.14.1 has a vulnerability in the implementation of HTTP/2 that can allow for excessive memory consumption. This issue affects nginx compiled with the ngx_http_v2_module (not compiled by default) if the 'http2' option of the 'listen' directive is used in a configuration file."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:nginx:nginx:*:*:*:*:*:*:*:*",
          "versionStartExcluding" : "1.9.5",
          "versionEndExcluding" : "1.14.1"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:nginx:nginx:*:*:*:*:*:*:*:*",
          "versionStartExcluding" : "1.15.0",
          "versionEndExcluding" : "1.15.6"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:opensuse:leap:15.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:C",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.8
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-11-07T14:29Z",
    "lastModifiedDate" : "2020-09-08T17:50Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-17145",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "bitcoin",
            "product" : {
              "product_data" : [ {
                "product_name" : "bitcoin_core",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "0.16.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.16.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "bitcoinknots",
            "product" : {
              "product_data" : [ {
                "product_name" : "bitcoin_knots",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "0.16.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.16.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "btcd_project",
            "product" : {
              "product_data" : [ {
                "product_name" : "btcd",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "0.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.3.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.11.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.13.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.20.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "0.20.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "litecoin",
            "product" : {
              "product_data" : [ {
                "product_name" : "litecoin",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "0.16.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-400"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://en.bitcoin.it/wiki/Common_Vulnerabilities_and_Exposures#CVE-2018-17145",
          "name" : "https://en.bitcoin.it/wiki/Common_Vulnerabilities_and_Exposures#CVE-2018-17145",
          "refsource" : "MISC",
          "tags" : [ "Vendor Advisory" ]
        }, {
          "url" : "https://github.com/bitcoin/bitcoin/blob/v0.16.2/doc/release-notes.md",
          "name" : "https://github.com/bitcoin/bitcoin/blob/v0.16.2/doc/release-notes.md",
          "refsource" : "MISC",
          "tags" : [ "Release Notes", "Third Party Advisory" ]
        }, {
          "url" : "https://invdos.net",
          "name" : "https://invdos.net",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://invdos.net/paper/CVE-2018-17145.pdf",
          "name" : "https://invdos.net/paper/CVE-2018-17145.pdf",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Technical Description", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Bitcoin Core 0.16.x before 0.16.2 and Bitcoin Knots 0.16.x before 0.16.2 allow remote denial of service via a flood of multiple transaction inv messages with random hashes, aka INVDoS. NOTE: this can also affect other cryptocurrencies, e.g., if they were forked from Bitcoin Core after 2017-11-15."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:bcoin:bcoin:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "1.0.2"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:bitcoin:bitcoin_core:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "0.16.0",
          "versionEndExcluding" : "0.16.2"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:bitcoinknots:bitcoin_knots:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "0.16.0",
          "versionEndExcluding" : "0.16.2"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.3.0:alpha:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.3.1:alpha:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.3.2:alpha:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.3.3:alpha:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.4.0:alpha:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.5.0:alpha:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.6.0:alpha:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.7.0:alpha:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.8.0:beta:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.9.0:beta:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.10.0:beta:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.11.0:beta:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.11.1:beta:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.12.0:beta:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.13.0:beta:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.13.0:beta2:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.20.0:beta:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:btcd_project:btcd:0.20.1:beta:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:decred:dcrd:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "1.5.2"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:litecoin:litecoin:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "0.16.0",
          "versionEndExcluding" : "0.16.2"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:namecoin:namecoin_core:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "0.16.0",
          "versionEndExcluding" : "0.16.2"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-10T17:15Z",
    "lastModifiedDate" : "2020-09-15T14:33Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-17765",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://ingenico.us/smart-terminals/telium2",
          "name" : "https://ingenico.us/smart-terminals/telium2",
          "refsource" : "MISC",
          "tags" : [ "Product" ]
        }, {
          "url" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "name" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/gtbS3Gr264w",
          "name" : "https://youtu.be/gtbS3Gr264w",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/oyUD7RDJsJs",
          "name" : "https://youtu.be/oyUD7RDJsJs",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Ingenico Telium 2 POS terminals have undeclared TRACE protocol commands. This is fixed in Telium 2 SDK v9.32.03 patch N."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:ingenico:telium_2_firmware:*:*:*:*:*:*:*:*",
            "versionEndExcluding" : "9.32.03"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:ingenico:telium_2:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-09T19:15Z",
    "lastModifiedDate" : "2020-09-15T14:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-17766",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-732"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://ingenico.us/smart-terminals/telium2",
          "name" : "https://ingenico.us/smart-terminals/telium2",
          "refsource" : "MISC",
          "tags" : [ "Product" ]
        }, {
          "url" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "name" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/gtbS3Gr264w",
          "name" : "https://youtu.be/gtbS3Gr264w",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/oyUD7RDJsJs",
          "name" : "https://youtu.be/oyUD7RDJsJs",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Ingenico Telium 2 POS Telium2 OS allow bypass of file-reading restrictions via the NTPT3 protocol. This is fixed in Telium 2 SDK v9.32.03 patch N."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:ingenico:telium_2_firmware:*:*:*:*:*:*:*:*",
            "versionEndExcluding" : "9.32.03"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:ingenico:telium_2:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:P/I:N/A:N",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.1
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.9,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-09T19:15Z",
    "lastModifiedDate" : "2020-09-15T14:49Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-17767",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-798"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://ingenico.us/smart-terminals/telium2",
          "name" : "https://ingenico.us/smart-terminals/telium2",
          "refsource" : "MISC",
          "tags" : [ "Product" ]
        }, {
          "url" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "name" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/gtbS3Gr264w",
          "name" : "https://youtu.be/gtbS3Gr264w",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/oyUD7RDJsJs",
          "name" : "https://youtu.be/oyUD7RDJsJs",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Ingenico Telium 2 POS terminals have hardcoded PPP credentials. This is fixed in Telium 2 SDK v9.32.03 patch N."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:ingenico:telium_2_firmware:*:*:*:*:*:*:*:*",
            "versionEndExcluding" : "9.32.03"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:ingenico:telium_2:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-09T19:15Z",
    "lastModifiedDate" : "2020-09-15T14:51Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-17768",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://ingenico.us/smart-terminals/telium2",
          "name" : "https://ingenico.us/smart-terminals/telium2",
          "refsource" : "MISC",
          "tags" : [ "Product" ]
        }, {
          "url" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "name" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/gtbS3Gr264w",
          "name" : "https://youtu.be/gtbS3Gr264w",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/oyUD7RDJsJs",
          "name" : "https://youtu.be/oyUD7RDJsJs",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Ingenico Telium 2 POS terminals have an insecure TRACE protocol. This is fixed in Telium 2 SDK v9.32.03 patch N."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:ingenico:telium_2_firmware:*:*:*:*:*:*:*:*",
            "versionEndExcluding" : "9.32.03"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:ingenico:telium_2:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-09T19:15Z",
    "lastModifiedDate" : "2020-09-15T14:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-17769",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-120"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://ingenico.us/smart-terminals/telium2",
          "name" : "https://ingenico.us/smart-terminals/telium2",
          "refsource" : "MISC",
          "tags" : [ "Product" ]
        }, {
          "url" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "name" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/gtbS3Gr264w",
          "name" : "https://youtu.be/gtbS3Gr264w",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/oyUD7RDJsJs",
          "name" : "https://youtu.be/oyUD7RDJsJs",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Ingenico Telium 2 POS terminals have a buffer overflow via the 0x26 command of the NTPT3 protocol. This is fixed in Telium 2 SDK v9.32.03 patch N."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:ingenico:telium_2_firmware:*:*:*:*:*:*:*:*",
            "versionEndExcluding" : "9.32.03"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:ingenico:telium_2:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-09T19:15Z",
    "lastModifiedDate" : "2020-09-15T15:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-17770",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-120"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://ingenico.us/smart-terminals/telium2",
          "name" : "https://ingenico.us/smart-terminals/telium2",
          "refsource" : "MISC",
          "tags" : [ "Product" ]
        }, {
          "url" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "name" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/gtbS3Gr264w",
          "name" : "https://youtu.be/gtbS3Gr264w",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/oyUD7RDJsJs",
          "name" : "https://youtu.be/oyUD7RDJsJs",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Ingenico Telium 2 POS terminals have a buffer overflow via the RemotePutFile command of the NTPT3 protocol. This is fixed in Telium 2 SDK v9.32.03 patch N."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:ingenico:telium_2_firmware:*:*:*:*:*:*:*:*",
            "versionEndExcluding" : "9.32.03"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:ingenico:telium_2:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-09T19:15Z",
    "lastModifiedDate" : "2020-09-15T15:21Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-17771",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-798"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://ingenico.us/smart-terminals/telium2",
          "name" : "https://ingenico.us/smart-terminals/telium2",
          "refsource" : "MISC",
          "tags" : [ "Product" ]
        }, {
          "url" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "name" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/gtbS3Gr264w",
          "name" : "https://youtu.be/gtbS3Gr264w",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/oyUD7RDJsJs",
          "name" : "https://youtu.be/oyUD7RDJsJs",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Ingenico Telium 2 POS terminals have hardcoded FTP credentials. This is fixed in Telium 2 SDK v9.32.03 patch N."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:ingenico:telium_2_firmware:*:*:*:*:*:*:*:*",
            "versionEndExcluding" : "9.32.03"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:ingenico:telium_2:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-09T19:15Z",
    "lastModifiedDate" : "2020-09-15T15:18Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-17772",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://ingenico.us/smart-terminals/telium2",
          "name" : "https://ingenico.us/smart-terminals/telium2",
          "refsource" : "MISC",
          "tags" : [ "Product" ]
        }, {
          "url" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "name" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/gtbS3Gr264w",
          "name" : "https://youtu.be/gtbS3Gr264w",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/oyUD7RDJsJs",
          "name" : "https://youtu.be/oyUD7RDJsJs",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Ingenico Telium 2 POS terminals allow arbitrary code execution via the TRACE protocol. This is fixed in Telium 2 SDK v9.32.03 patch N."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:ingenico:telium_2_firmware:*:*:*:*:*:*:*:*",
            "versionEndExcluding" : "9.32.03"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:ingenico:telium_2:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-09T19:15Z",
    "lastModifiedDate" : "2020-09-15T15:22Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-17773",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-120"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://ingenico.us/smart-terminals/telium2",
          "name" : "https://ingenico.us/smart-terminals/telium2",
          "refsource" : "MISC",
          "tags" : [ "Product" ]
        }, {
          "url" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "name" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/gtbS3Gr264w",
          "name" : "https://youtu.be/gtbS3Gr264w",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/oyUD7RDJsJs",
          "name" : "https://youtu.be/oyUD7RDJsJs",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Ingenico Telium 2 POS terminals have a buffer overflow via SOCKET_TASK in the NTPT3 protocol. This is fixed in Telium 2 SDK v9.32.03 patch N."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:ingenico:telium_2_firmware:*:*:*:*:*:*:*:*",
            "versionEndExcluding" : "9.32.03"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:ingenico:telium_2:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-09T19:15Z",
    "lastModifiedDate" : "2020-09-15T15:23Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-17774",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://ingenico.us/smart-terminals/telium2",
          "name" : "https://ingenico.us/smart-terminals/telium2",
          "refsource" : "MISC",
          "tags" : [ "Product" ]
        }, {
          "url" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "name" : "https://www.securingpayments.com/2020/08/are-happy-to-announce-that-ingenico-has.html",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/gtbS3Gr264w",
          "name" : "https://youtu.be/gtbS3Gr264w",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://youtu.be/oyUD7RDJsJs",
          "name" : "https://youtu.be/oyUD7RDJsJs",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Ingenico Telium 2 POS terminals have an insecure NTPT3 protocol. This is fixed in Telium 2 SDK v9.32.03 patch N."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:ingenico:telium_2_firmware:*:*:*:*:*:*:*:*",
            "versionEndExcluding" : "9.32.03"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:ingenico:telium_2:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-09T19:15Z",
    "lastModifiedDate" : "2020-09-15T13:37Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-17958",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qemu",
            "product" : {
              "product_data" : [ {
                "product_name" : "qemu",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "3.0.1",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "virtualization",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "4.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "virtualization_manager",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "4.3",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-190"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.openwall.com/lists/oss-security/2018/10/08/1",
          "name" : "[oss-security] 20181008 Qemu: integer overflow issues",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/105556",
          "name" : "105556",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2019:2425",
          "name" : "RHSA-2019:2425",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2019:2553",
          "name" : "RHSA-2019:2553",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2019/01/msg00023.html",
          "name" : "[debian-lts-announce] 20190129 [SECURITY] [DLA 1646-1] qemu security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.gnu.org/archive/html/qemu-devel/2018-09/msg03269.html",
          "name" : "[qemu-devel] 20180926 [PULL 22/25] rtl8139: fix possible out of bound access",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://seclists.org/bugtraq/2019/May/76",
          "name" : "20190531 [SECURITY] [DSA 4454-1] qemu security update",
          "refsource" : "BUGTRAQ",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3826-1/",
          "name" : "USN-3826-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2019/dsa-4454",
          "name" : "DSA-4454",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Qemu has a Buffer Overflow in rtl8139_do_receive in hw/net/rtl8139.c because an incorrect integer data type is used."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "3.0.1"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:a:redhat:virtualization:4.0:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:virtualization_manager:4.3:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-10-09T22:29Z",
    "lastModifiedDate" : "2020-09-10T17:11Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-18751",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "gnu",
            "product" : {
              "product_data" : [ {
                "product_name" : "gettext",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "0.19.8",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "12.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "18.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-415"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2020-08/msg00061.html",
          "name" : "openSUSE-SU-2020:1270",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2020-08/msg00065.html",
          "name" : "openSUSE-SU-2020:1278",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00025.html",
          "name" : "openSUSE-SU-2020:1385",
          "refsource" : "SUSE",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2019:3643",
          "name" : "RHSA-2019:3643",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://github.com/CCCCCrash/POCs/tree/master/Bin/Tools-gettext-0.19.8.1/doublefree",
          "name" : "https://github.com/CCCCCrash/POCs/tree/master/Bin/Tools-gettext-0.19.8.1/doublefree",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/CCCCCrash/POCs/tree/master/Bin/Tools-gettext-0.19.8.1/heapcorruption",
          "name" : "https://github.com/CCCCCrash/POCs/tree/master/Bin/Tools-gettext-0.19.8.1/heapcorruption",
          "refsource" : "MISC",
          "tags" : [ "Exploit", "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3815-1/",
          "name" : "USN-3815-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3815-2/",
          "name" : "USN-3815-2",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An issue was discovered in GNU gettext 0.19.8. There is a double free in default_add_message in read-catalog.c, related to an invalid free in po_gram_parse in po-gram-gen.y, as demonstrated by lt-msgfmt."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:gnu:gettext:0.19.8:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.8,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 7.5
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 10.0,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-10-29T12:29Z",
    "lastModifiedDate" : "2020-09-08T18:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-19946",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qnap",
            "product" : {
              "product_data" : [ {
                "product_name" : "helpdesk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.0.06",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.01",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.02",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-295"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.qnap.com/zh-tw/security-advisory/qsa-20-05",
          "name" : "https://www.qnap.com/zh-tw/security-advisory/qsa-20-05",
          "refsource" : "MISC",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The vulnerability have been reported to affect earlier versions of Helpdesk. If exploited, this improper certificate validation vulnerability could allow an attacker to spoof a trusted entity by interfering in the communication path between the host and client. QNAP has already fixed the issue in Helpdesk 3.0.3 and later."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qnap:helpdesk:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "3.0.3"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-11T15:15Z",
    "lastModifiedDate" : "2020-09-16T19:12Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-19947",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qnap",
            "product" : {
              "product_data" : [ {
                "product_name" : "helpdesk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.0.06",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.01",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.02",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-209"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.qnap.com/zh-tw/security-advisory/qsa-20-05",
          "name" : "https://www.qnap.com/zh-tw/security-advisory/qsa-20-05",
          "refsource" : "MISC",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The vulnerability have been reported to affect earlier versions of Helpdesk. If exploited, this information exposure vulnerability could disclose sensitive information. QNAP has already fixed the issue in Helpdesk 3.0.3 and later."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qnap:helpdesk:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "3.0.3"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-11T15:15Z",
    "lastModifiedDate" : "2020-09-16T19:23Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-19948",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qnap",
            "product" : {
              "product_data" : [ {
                "product_name" : "helpdesk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.0.06",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.14",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.01",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.02",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.10",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.12",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.15",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.16",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.17",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.18",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.19",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.20",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.21",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "3.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-352"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.qnap.com/zh-tw/security-advisory/qsa-20-05",
          "name" : "https://www.qnap.com/zh-tw/security-advisory/qsa-20-05",
          "refsource" : "MISC",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "The vulnerability have been reported to affect earlier versions of Helpdesk. If exploited, this cross-site request forgery (CSRF) vulnerability could allow attackers to force NAS users to execute unintentional actions through a web application. QNAP has already fixed the issue in Helpdesk 3.0.3 and later."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:qnap:helpdesk:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "3.0.3"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2020-09-11T15:15Z",
    "lastModifiedDate" : "2020-09-16T19:20Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-20432",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://packetstormsecurity.com/files/159058/COVR-3902-1.01B0-Hardcoded-Credentials.html",
          "name" : "http://packetstormsecurity.com/files/159058/COVR-3902-1.01B0-Hardcoded-Credentials.html",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10109",
          "name" : "https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10109",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "D-Link COVR-2600R and COVR-3902 Kit before 1.01b05Beta01 use hardcoded credentials for telnet connection, which allows unauthenticated attackers to gain privileged access to the router, and to extract sensitive data or modify the configuration."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ ]
    },
    "impact" : { },
    "publishedDate" : "2020-09-14T14:15Z",
    "lastModifiedDate" : "2020-09-14T14:27Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-20669",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "linux",
            "product" : {
              "product_data" : [ {
                "product_name" : "linux_kernel",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "4.19.13",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-20"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/log/drivers/gpu/drm/i915/i915_gem_execbuffer.c",
          "name" : "http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/log/drivers/gpu/drm/i915/i915_gem_execbuffer.c",
          "refsource" : "MISC",
          "tags" : [ "Release Notes", "Vendor Advisory" ]
        }, {
          "url" : "http://lists.opensuse.org/opensuse-security-announce/2019-02/msg00042.html",
          "name" : "[opensuse-security-announce] 20190218 [security-announce] openSUSE-SU-2019:0203-1: important: Security update for the Linux Kernel",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2019/01/23/6",
          "name" : "[oss-security] 20190123 Linux Kernel: Missing access_ok() checks in IOCTL function  (gpu/drm/i915 Driver)",
          "refsource" : "MLIST",
          "tags" : [ "Exploit", "Mailing List", "Patch", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/106748",
          "name" : "106748",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/security/cve/cve-2018-20669",
          "name" : "https://access.redhat.com/security/cve/cve-2018-20669",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20190404-0002/",
          "name" : "https://security.netapp.com/advisory/ntap-20190404-0002/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://support.f5.com/csp/article/K32059550",
          "name" : "https://support.f5.com/csp/article/K32059550",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/4485-1/",
          "name" : "USN-4485-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An issue where a provided address with access_ok() is not checked was discovered in i915_gem_execbuffer2_ioctl in drivers/gpu/drm/i915/i915_gem_execbuffer.c in the Linux kernel through 4.19.13. A local attacker can craft a malicious IOCTL function call to overwrite arbitrary kernel memory, resulting in a Denial of Service or privilege escalation."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "4.19.13"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
          "attackVector" : "LOCAL",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "LOW",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.8,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.8,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2019-03-21T16:00Z",
    "lastModifiedDate" : "2020-09-15T18:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-20845",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.3.0",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-369"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/108921",
          "name" : "108921",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/pull/1168/commits/c5bd64ea146162967c29bd2af0cbb845ba3eaaaf",
          "name" : "https://github.com/uclouvain/openjpeg/pull/1168/commits/c5bd64ea146162967c29bd2af0cbb845ba3eaaaf",
          "refsource" : "MISC",
          "tags" : [ "Patch", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Division-by-zero vulnerabilities in the functions pi_next_pcrl, pi_next_cprl, and pi_next_rpcl in openmj2/pi.c in OpenJPEG through 2.3.0 allow remote attackers to cause a denial of service (application crash)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.3.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2019-06-26T18:15Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-20846",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.3.0",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-20"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/108921",
          "name" : "108921",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/pull/1168/commits/c277159986c80142180fbe5efb256bbf3bdf3edc",
          "name" : "https://github.com/uclouvain/openjpeg/pull/1168/commits/c277159986c80142180fbe5efb256bbf3bdf3edc",
          "refsource" : "MISC",
          "tags" : [ "Patch", "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Out-of-bounds accesses in the functions pi_next_lrcp, pi_next_rlcp, pi_next_rpcl, pi_next_pcrl, pi_next_rpcl, and pi_next_cprl in openmj2/pi.c in OpenJPEG through 2.3.0 allow remote attackers to cause a denial of service (application crash)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.3.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2019-06-26T18:15Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-20847",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "uclouvain",
            "product" : {
              "product_data" : [ {
                "product_name" : "openjpeg",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2.3.0",
                    "version_affected" : "<="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-190"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/108921",
          "name" : "108921",
          "refsource" : "BID",
          "tags" : [ ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/commit/5d00b719f4b93b1445e6fb4c766b9a9883c57949",
          "name" : "https://github.com/uclouvain/openjpeg/commit/5d00b719f4b93b1445e6fb4c766b9a9883c57949",
          "refsource" : "MISC",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/issues/431",
          "name" : "https://github.com/uclouvain/openjpeg/issues/431",
          "refsource" : "MISC",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://github.com/uclouvain/openjpeg/pull/1168/commits/c58df149900df862806d0e892859b41115875845",
          "name" : "https://github.com/uclouvain/openjpeg/pull/1168/commits/c58df149900df862806d0e892859b41115875845",
          "refsource" : "MISC",
          "tags" : [ "Patch", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2019/07/msg00010.html",
          "name" : "[debian-lts-announce] 20190710 [SECURITY] [DLA 1851-1] openjpeg2 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An improper computation of p_tx0, p_tx1, p_ty0 and p_ty1 in the function opj_get_encoding_parameters in openjp2/pi.c in OpenJPEG through 2.3.0 can lead to an integer overflow."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:uclouvain:openjpeg:*:*:*:*:*:*:*:*",
          "versionEndIncluding" : "2.3.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.8,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2019-06-26T18:15Z",
    "lastModifiedDate" : "2020-09-09T19:57Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2579",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.16",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102663",
          "name" : "102663",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0115",
          "name" : "RHSA-2018:0115",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0349",
          "name" : "RHSA-2018:0349",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/04/msg00003.html",
          "name" : "[debian-lts-announce] 20180403 [SECURITY] [DLA 1339-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3614-1/",
          "name" : "USN-3614-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4166",
          "name" : "DSA-4166",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded, JRockit accessible data. Note: This vulnerability applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.16:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "LOW",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 3.7,
          "baseSeverity" : "LOW"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2581",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102636",
          "name" : "102636",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: JavaFX). Supported versions that are affected are Java SE: 7u161, 8u152 and 9.0.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 4.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "LOW",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.7,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2582",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102597",
          "name" : "102597",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). Supported versions that are affected are Java SE: 8u152 and 9.0.1; Java SE Embedded: 8u151. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java SE, Java SE Embedded accessible data. Note: This vulnerability applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 6.5 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "NONE",
          "baseScore" : 6.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2588",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.16",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102661",
          "name" : "102661",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0115",
          "name" : "RHSA-2018:0115",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0349",
          "name" : "RHSA-2018:0349",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/04/msg00003.html",
          "name" : "[debian-lts-announce] 20180403 [SECURITY] [DLA 1339-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3614-1/",
          "name" : "USN-3614-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4166",
          "name" : "DSA-4166",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: LDAP). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded, JRockit accessible data. Note: This vulnerability applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 4.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.16:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "LOW",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "LOW",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:S/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "SINGLE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2599",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.16",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102633",
          "name" : "102633",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0115",
          "name" : "RHSA-2018:0115",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0349",
          "name" : "RHSA-2018:0349",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/04/msg00003.html",
          "name" : "[debian-lts-announce] 20180403 [SECURITY] [DLA 1339-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3614-1/",
          "name" : "USN-3614-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4166",
          "name" : "DSA-4166",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JNDI). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded, JRockit accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: This vulnerability applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 4.8 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.16:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "LOW",
          "baseScore" : 4.8,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 2.5
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 4.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2602",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102642",
          "name" : "102642",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0115",
          "name" : "RHSA-2018:0115",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0349",
          "name" : "RHSA-2018:0349",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/04/msg00003.html",
          "name" : "[debian-lts-announce] 20180403 [SECURITY] [DLA 1339-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3614-1/",
          "name" : "USN-3614-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4166",
          "name" : "DSA-4166",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: I18n). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where Java SE, Java SE Embedded executes to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded accessible data as well as unauthorized read access to a subset of Java SE, Java SE Embedded accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 4.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L",
          "attackVector" : "LOCAL",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "LOW",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "LOW",
          "baseScore" : 4.5,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 1.0,
        "impactScore" : 3.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 3.7
        },
        "severity" : "LOW",
        "exploitabilityScore" : 1.9,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2603",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.16",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102625",
          "name" : "102625",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0115",
          "name" : "RHSA-2018:0115",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0349",
          "name" : "RHSA-2018:0349",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/04/msg00003.html",
          "name" : "[debian-lts-announce] 20180403 [SECURITY] [DLA 1339-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3614-1/",
          "name" : "USN-3614-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4166",
          "name" : "DSA-4166",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: This vulnerability applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.16:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2618",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.16",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102612",
          "name" : "102612",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0115",
          "name" : "RHSA-2018:0115",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0349",
          "name" : "RHSA-2018:0349",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/04/msg00003.html",
          "name" : "[debian-lts-announce] 20180403 [SECURITY] [DLA 1339-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3614-1/",
          "name" : "USN-3614-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4166",
          "name" : "DSA-4166",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JCE). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Java SE, Java SE Embedded, JRockit accessible data. Note: This vulnerability applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 5.9 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.16:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.9,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2627",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102584",
          "name" : "102584",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Installer). Supported versions that are affected are Java SE: 8u152 and 9.0.1. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Java SE executes to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to the Windows installer only. CVSS 3.0 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "LOCAL",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "LOW",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 0.8,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 3.7
        },
        "severity" : "LOW",
        "exploitabilityScore" : 1.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2629",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.16",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102615",
          "name" : "102615",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0115",
          "name" : "RHSA-2018:0115",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0349",
          "name" : "RHSA-2018:0349",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/04/msg00003.html",
          "name" : "[debian-lts-announce] 20180403 [SECURITY] [DLA 1339-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3614-1/",
          "name" : "USN-3614-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4166",
          "name" : "DSA-4166",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JGSS). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java SE, Java SE Embedded, JRockit accessible data. Note: This vulnerability applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 5.3 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.16:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2633",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.16",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102557",
          "name" : "102557",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0115",
          "name" : "RHSA-2018:0115",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0349",
          "name" : "RHSA-2018:0349",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/04/msg00003.html",
          "name" : "[debian-lts-announce] 20180403 [SECURITY] [DLA 1339-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3614-1/",
          "name" : "USN-3614-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4166",
          "name" : "DSA-4166",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JNDI). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, JRockit, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded, JRockit. Note: This vulnerability applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.16:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2634",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102592",
          "name" : "102592",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0349",
          "name" : "RHSA-2018:0349",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/04/msg00003.html",
          "name" : "[debian-lts-announce] 20180403 [SECURITY] [DLA 1339-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3614-1/",
          "name" : "USN-3614-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4166",
          "name" : "DSA-4166",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JGSS). Supported versions that are affected are Java SE: 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. While the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Java SE, Java SE Embedded accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 6.8 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 6.8,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 4.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2637",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.16",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102576",
          "name" : "102576",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0115",
          "name" : "RHSA-2018:0115",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0349",
          "name" : "RHSA-2018:0349",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/04/msg00003.html",
          "name" : "[debian-lts-announce] 20180403 [SECURITY] [DLA 1339-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3614-1/",
          "name" : "USN-3614-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4166",
          "name" : "DSA-4166",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JMX). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java SE, Java SE Embedded, JRockit accessible data as well as unauthorized access to critical data or complete access to all Java SE, Java SE Embedded, JRockit accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.0 Base Score 7.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.16:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "NONE",
          "baseScore" : 7.4,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 5.2
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 4.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2638",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102546",
          "name" : "102546",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). Supported versions that are affected are Java SE: 8u152 and 9.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2639",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102556",
          "name" : "102556",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). Supported versions that are affected are Java SE: 8u152 and 9.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2641",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102605",
          "name" : "102605",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0115",
          "name" : "RHSA-2018:0115",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0349",
          "name" : "RHSA-2018:0349",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/04/msg00003.html",
          "name" : "[debian-lts-announce] 20180403 [SECURITY] [DLA 1339-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3614-1/",
          "name" : "USN-3614-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4166",
          "name" : "DSA-4166",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: AWT). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java SE, Java SE Embedded accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 6.1 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:N/I:H/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:N/I:H/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "NONE",
          "baseScore" : 6.1,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 4.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2657",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.16",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102629",
          "name" : "102629",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0115",
          "name" : "RHSA-2018:0115",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, JRockit component of Oracle Java SE (subcomponent: Serialization). Supported versions that are affected are Java SE: 6u171 and 7u161; JRockit: R28.3.16. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, JRockit. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.16:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2663",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.16",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102662",
          "name" : "102662",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0115",
          "name" : "RHSA-2018:0115",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0349",
          "name" : "RHSA-2018:0349",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/04/msg00003.html",
          "name" : "[debian-lts-announce] 20180403 [SECURITY] [DLA 1339-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3614-1/",
          "name" : "USN-3614-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4166",
          "name" : "DSA-4166",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: This vulnerability applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 4.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.16:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 4.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2677",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102656",
          "name" : "102656",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0115",
          "name" : "RHSA-2018:0115",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0349",
          "name" : "RHSA-2018:0349",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/04/msg00003.html",
          "name" : "[debian-lts-announce] 20180403 [SECURITY] [DLA 1339-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3614-1/",
          "name" : "USN-3614-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4166",
          "name" : "DSA-4166",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: AWT). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 4.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 4.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2678",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.9.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.16",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/102659",
          "name" : "102659",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040203",
          "name" : "1040203",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0095",
          "name" : "RHSA-2018:0095",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0099",
          "name" : "RHSA-2018:0099",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0100",
          "name" : "RHSA-2018:0100",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0115",
          "name" : "RHSA-2018:0115",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0349",
          "name" : "RHSA-2018:0349",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0351",
          "name" : "RHSA-2018:0351",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0352",
          "name" : "RHSA-2018:0352",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0458",
          "name" : "RHSA-2018:0458",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:0521",
          "name" : "RHSA-2018:0521",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1463",
          "name" : "RHSA-2018:1463",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1812",
          "name" : "RHSA-2018:1812",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/04/msg00003.html",
          "name" : "[debian-lts-announce] 20180403 [SECURITY] [DLA 1339-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180117-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03911en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3613-1/",
          "name" : "USN-3613-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3614-1/",
          "name" : "USN-3614-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4144",
          "name" : "DSA-4144",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4166",
          "name" : "DSA-4166",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JNDI). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: This vulnerability applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 4.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.9.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.16:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.4:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp_p9000_command_view:*:*:*:*:advanced:*:*:*",
          "versionStartIncluding" : "8.6.2-01"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 4.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-01-18T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2783",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.17",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/103832",
          "name" : "103832",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040697",
          "name" : "1040697",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1203",
          "name" : "RHSA-2018:1203",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1205",
          "name" : "RHSA-2018:1205",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1721",
          "name" : "RHSA-2018:1721",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1722",
          "name" : "RHSA-2018:1722",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1723",
          "name" : "RHSA-2018:1723",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1724",
          "name" : "RHSA-2018:1724",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1974",
          "name" : "RHSA-2018:1974",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1975",
          "name" : "RHSA-2018:1975",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3644-1/",
          "name" : "USN-3644-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u181, 7u161 and 8u152; Java SE Embedded: 8u152; JRockit: R28.3.17. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java SE, Java SE Embedded, JRockit accessible data as well as unauthorized access to critical data or complete access to all Java SE, Java SE Embedded, JRockit accessible data. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 7.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update152:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_161:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_152:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.17:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "NONE",
          "baseScore" : 7.4,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 5.2
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-04-19T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2790",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "xp7_command_view",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/103877",
          "name" : "103877",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040697",
          "name" : "1040697",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1188",
          "name" : "RHSA-2018:1188",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1191",
          "name" : "RHSA-2018:1191",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1201",
          "name" : "RHSA-2018:1201",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1202",
          "name" : "RHSA-2018:1202",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1203",
          "name" : "RHSA-2018:1203",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1204",
          "name" : "RHSA-2018:1204",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1205",
          "name" : "RHSA-2018:1205",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1206",
          "name" : "RHSA-2018:1206",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1270",
          "name" : "RHSA-2018:1270",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1278",
          "name" : "RHSA-2018:1278",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1721",
          "name" : "RHSA-2018:1721",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1722",
          "name" : "RHSA-2018:1722",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1723",
          "name" : "RHSA-2018:1723",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1724",
          "name" : "RHSA-2018:1724",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1974",
          "name" : "RHSA-2018:1974",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1975",
          "name" : "RHSA-2018:1975",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201903-14",
          "name" : "GLSA-201903-14",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3644-1/",
          "name" : "USN-3644-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3691-1/",
          "name" : "USN-3691-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4185",
          "name" : "DSA-4185",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4225",
          "name" : "DSA-4225",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u181, 7u171, 8u162 and 10; Java SE Embedded: 8u161. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 3.1 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.10.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.10.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 3.1,
          "baseSeverity" : "LOW"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-04-19T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2794",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "xp7_command_view",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.17",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/103817",
          "name" : "103817",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040697",
          "name" : "1040697",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1188",
          "name" : "RHSA-2018:1188",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1191",
          "name" : "RHSA-2018:1191",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1201",
          "name" : "RHSA-2018:1201",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1202",
          "name" : "RHSA-2018:1202",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1203",
          "name" : "RHSA-2018:1203",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1204",
          "name" : "RHSA-2018:1204",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1205",
          "name" : "RHSA-2018:1205",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1206",
          "name" : "RHSA-2018:1206",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1270",
          "name" : "RHSA-2018:1270",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1278",
          "name" : "RHSA-2018:1278",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1721",
          "name" : "RHSA-2018:1721",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1722",
          "name" : "RHSA-2018:1722",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1723",
          "name" : "RHSA-2018:1723",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1724",
          "name" : "RHSA-2018:1724",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1974",
          "name" : "RHSA-2018:1974",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1975",
          "name" : "RHSA-2018:1975",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201903-14",
          "name" : "GLSA-201903-14",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3644-1/",
          "name" : "USN-3644-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3691-1/",
          "name" : "USN-3691-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4185",
          "name" : "DSA-4185",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4225",
          "name" : "DSA-4225",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, JRockit component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u181, 7u171, 8u162, 10 and JRockit: R28.3.17. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where Java SE, JRockit executes to compromise Java SE, JRockit. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, JRockit, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, JRockit. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 7.7 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.10.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.10.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.17:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "LOCAL",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.7,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.0,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 3.7
        },
        "severity" : "LOW",
        "exploitabilityScore" : 1.9,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-04-19T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2795",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "xp7_command_view",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.17",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/103847",
          "name" : "103847",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040697",
          "name" : "1040697",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1188",
          "name" : "RHSA-2018:1188",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1191",
          "name" : "RHSA-2018:1191",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1201",
          "name" : "RHSA-2018:1201",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1202",
          "name" : "RHSA-2018:1202",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1203",
          "name" : "RHSA-2018:1203",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1204",
          "name" : "RHSA-2018:1204",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1205",
          "name" : "RHSA-2018:1205",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1206",
          "name" : "RHSA-2018:1206",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1270",
          "name" : "RHSA-2018:1270",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1278",
          "name" : "RHSA-2018:1278",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1721",
          "name" : "RHSA-2018:1721",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1722",
          "name" : "RHSA-2018:1722",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1723",
          "name" : "RHSA-2018:1723",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1724",
          "name" : "RHSA-2018:1724",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1974",
          "name" : "RHSA-2018:1974",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1975",
          "name" : "RHSA-2018:1975",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201903-14",
          "name" : "GLSA-201903-14",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3644-1/",
          "name" : "USN-3644-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3691-1/",
          "name" : "USN-3691-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4185",
          "name" : "DSA-4185",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4225",
          "name" : "DSA-4225",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u181, 7u171, 8u162 and 10; Java SE Embedded: 8u161; JRockit: R28.3.17. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.10.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.10.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.17:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-04-19T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2796",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "xp7_command_view",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.17",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/103868",
          "name" : "103868",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040697",
          "name" : "1040697",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1188",
          "name" : "RHSA-2018:1188",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1191",
          "name" : "RHSA-2018:1191",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1201",
          "name" : "RHSA-2018:1201",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1202",
          "name" : "RHSA-2018:1202",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1204",
          "name" : "RHSA-2018:1204",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1206",
          "name" : "RHSA-2018:1206",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1270",
          "name" : "RHSA-2018:1270",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1278",
          "name" : "RHSA-2018:1278",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1721",
          "name" : "RHSA-2018:1721",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1722",
          "name" : "RHSA-2018:1722",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1723",
          "name" : "RHSA-2018:1723",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1724",
          "name" : "RHSA-2018:1724",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1974",
          "name" : "RHSA-2018:1974",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1975",
          "name" : "RHSA-2018:1975",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201903-14",
          "name" : "GLSA-201903-14",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3644-1/",
          "name" : "USN-3644-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3691-1/",
          "name" : "USN-3691-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4185",
          "name" : "DSA-4185",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4225",
          "name" : "DSA-4225",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Concurrency). Supported versions that are affected are Java SE: 7u171, 8u162 and 10; Java SE Embedded: 8u161; JRockit: R28.3.17. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.10.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.10.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.17:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-04-19T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2797",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "xp7_command_view",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.17",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/103846",
          "name" : "103846",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040697",
          "name" : "1040697",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1188",
          "name" : "RHSA-2018:1188",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1191",
          "name" : "RHSA-2018:1191",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1201",
          "name" : "RHSA-2018:1201",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1202",
          "name" : "RHSA-2018:1202",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1203",
          "name" : "RHSA-2018:1203",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1204",
          "name" : "RHSA-2018:1204",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1205",
          "name" : "RHSA-2018:1205",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1206",
          "name" : "RHSA-2018:1206",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1270",
          "name" : "RHSA-2018:1270",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1278",
          "name" : "RHSA-2018:1278",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1721",
          "name" : "RHSA-2018:1721",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1722",
          "name" : "RHSA-2018:1722",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1723",
          "name" : "RHSA-2018:1723",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1724",
          "name" : "RHSA-2018:1724",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1974",
          "name" : "RHSA-2018:1974",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1975",
          "name" : "RHSA-2018:1975",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201903-14",
          "name" : "GLSA-201903-14",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3644-1/",
          "name" : "USN-3644-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3691-1/",
          "name" : "USN-3691-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4185",
          "name" : "DSA-4185",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4225",
          "name" : "DSA-4225",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JMX). Supported versions that are affected are Java SE: 6u181, 7u171, 8u162 and 10; Java SE Embedded: 8u161; JRockit: R28.3.17. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.10.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.10.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.17:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-04-19T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2798",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "xp7_command_view",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.17",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/103841",
          "name" : "103841",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040697",
          "name" : "1040697",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1188",
          "name" : "RHSA-2018:1188",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1191",
          "name" : "RHSA-2018:1191",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1201",
          "name" : "RHSA-2018:1201",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1202",
          "name" : "RHSA-2018:1202",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1203",
          "name" : "RHSA-2018:1203",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1204",
          "name" : "RHSA-2018:1204",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1205",
          "name" : "RHSA-2018:1205",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1206",
          "name" : "RHSA-2018:1206",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1270",
          "name" : "RHSA-2018:1270",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1278",
          "name" : "RHSA-2018:1278",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1721",
          "name" : "RHSA-2018:1721",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1722",
          "name" : "RHSA-2018:1722",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1723",
          "name" : "RHSA-2018:1723",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1724",
          "name" : "RHSA-2018:1724",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1974",
          "name" : "RHSA-2018:1974",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1975",
          "name" : "RHSA-2018:1975",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201903-14",
          "name" : "GLSA-201903-14",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3644-1/",
          "name" : "USN-3644-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3691-1/",
          "name" : "USN-3691-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4185",
          "name" : "DSA-4185",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4225",
          "name" : "DSA-4225",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: AWT). Supported versions that are affected are Java SE: 6u181, 7u171, 8u162 and 10; Java SE Embedded: 8u161; JRockit: R28.3.17. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.10.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.10.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.17:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-04-19T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2799",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "apache",
            "product" : {
              "product_data" : [ {
                "product_name" : "xerces-j",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.0.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.1.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.2.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.4.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.0.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.2.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.6.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.7.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.8.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "2.11.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "xp7_command_view",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.17",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/103872",
          "name" : "103872",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040697",
          "name" : "1040697",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1188",
          "name" : "RHSA-2018:1188",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1191",
          "name" : "RHSA-2018:1191",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1201",
          "name" : "RHSA-2018:1201",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1202",
          "name" : "RHSA-2018:1202",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1204",
          "name" : "RHSA-2018:1204",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1206",
          "name" : "RHSA-2018:1206",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1270",
          "name" : "RHSA-2018:1270",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1278",
          "name" : "RHSA-2018:1278",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1721",
          "name" : "RHSA-2018:1721",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1722",
          "name" : "RHSA-2018:1722",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1723",
          "name" : "RHSA-2018:1723",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1724",
          "name" : "RHSA-2018:1724",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1974",
          "name" : "RHSA-2018:1974",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1975",
          "name" : "RHSA-2018:1975",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://lists.apache.org/thread.html/49dc6702104a86ecbb40292dcd329ce9ae4c32b74733199ecab14a73@%3Cj-users.xerces.apache.org%3E",
          "name" : "[j-users] 20180503 [ANNOUNCEMENT]: Apache Xerces-J 2.12.0 now available",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Release Notes", "Third Party Advisory" ]
        }, {
          "url" : "https://lists.apache.org/thread.html/b53d4601ecd9ec63c799dbe1bc5b78e0d52f4cef429da2dfe63cf06d@%3Cfop-dev.xmlgraphics.apache.org%3E",
          "name" : "[xmlgraphics-fop-dev] 20191018 [jira] [Created] (FOP-2885) Security Vulnerability with Xerces version <= 2.11",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/r449b5d89c7b2ba3762584cf6c38e01867d4b24706e023cf2a9911307@%3Cuser.spark.apache.org%3E",
          "name" : "[spark-user] 20200224 [SPARK Dependencies] Security Vulnerability with Xerces version < 2.12",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201903-14",
          "name" : "GLSA-201903-14",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3644-1/",
          "name" : "USN-3644-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3691-1/",
          "name" : "USN-3691-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4185",
          "name" : "DSA-4185",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4225",
          "name" : "DSA-4225",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JAXP). Supported versions that are affected are Java SE: 7u171, 8u162 and 10; Java SE Embedded: 8u161; JRockit: R28.3.17. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.10.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.10.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.17:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:apache:xerces-j:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "2.12.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-04-19T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2800",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "xp7_command_view",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.17",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "satellite",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/103849",
          "name" : "103849",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040697",
          "name" : "1040697",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1188",
          "name" : "RHSA-2018:1188",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1191",
          "name" : "RHSA-2018:1191",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1201",
          "name" : "RHSA-2018:1201",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1202",
          "name" : "RHSA-2018:1202",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1203",
          "name" : "RHSA-2018:1203",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1204",
          "name" : "RHSA-2018:1204",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1205",
          "name" : "RHSA-2018:1205",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1206",
          "name" : "RHSA-2018:1206",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1270",
          "name" : "RHSA-2018:1270",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1278",
          "name" : "RHSA-2018:1278",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1721",
          "name" : "RHSA-2018:1721",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1722",
          "name" : "RHSA-2018:1722",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1723",
          "name" : "RHSA-2018:1723",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1724",
          "name" : "RHSA-2018:1724",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1974",
          "name" : "RHSA-2018:1974",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1975",
          "name" : "RHSA-2018:1975",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201903-14",
          "name" : "GLSA-201903-14",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3644-1/",
          "name" : "USN-3644-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3691-1/",
          "name" : "USN-3691-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4185",
          "name" : "DSA-4185",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4225",
          "name" : "DSA-4225",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, JRockit component of Oracle Java SE (subcomponent: RMI). Supported versions that are affected are Java SE: 6u181, 7u171 and 8u162; JRockit: R28.3.17. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, JRockit. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, JRockit accessible data as well as unauthorized read access to a subset of Java SE, JRockit accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.0 Base Score 4.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_162:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.17:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.7:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:redhat:satellite:5.8:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "LOW",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.2,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 2.5
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 4.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-04-19T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2811",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/103810",
          "name" : "103810",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040697",
          "name" : "1040697",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1202",
          "name" : "RHSA-2018:1202",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1204",
          "name" : "RHSA-2018:1204",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201903-14",
          "name" : "GLSA-201903-14",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Install). Supported versions that are affected are Java SE: 8u162 and 10. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where Java SE executes to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: Applies to installation process on client deployment of Java. CVSS 3.0 Base Score 7.7 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.10.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.10.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "LOCAL",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.7,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.0,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 3.7
        },
        "severity" : "LOW",
        "exploitabilityScore" : 1.9,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-04-19T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2814",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "xp7_command_view",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "*",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/103798",
          "name" : "103798",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040697",
          "name" : "1040697",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1188",
          "name" : "RHSA-2018:1188",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1191",
          "name" : "RHSA-2018:1191",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1201",
          "name" : "RHSA-2018:1201",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1202",
          "name" : "RHSA-2018:1202",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1203",
          "name" : "RHSA-2018:1203",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1204",
          "name" : "RHSA-2018:1204",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1205",
          "name" : "RHSA-2018:1205",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1206",
          "name" : "RHSA-2018:1206",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1270",
          "name" : "RHSA-2018:1270",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1278",
          "name" : "RHSA-2018:1278",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201903-14",
          "name" : "GLSA-201903-14",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3644-1/",
          "name" : "USN-3644-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3691-1/",
          "name" : "USN-3691-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4185",
          "name" : "DSA-4185",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4225",
          "name" : "DSA-4225",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). Supported versions that are affected are Java SE: 6u181, 7u171, 8u162 and 10; Java SE Embedded: 8u161. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.10.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.10.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:*:*:*:*:advanced:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-04-19T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2815",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "hp",
            "product" : {
              "product_data" : [ {
                "product_name" : "xp7_command_view",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.10.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.17",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "schneider-electric",
            "product" : {
              "product_data" : [ {
                "product_name" : "struxureware_data_center_expert",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.5.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "canonical",
            "product" : {
              "product_data" : [ {
                "product_name" : "ubuntu_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "14.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "16.04",
                    "version_affected" : "="
                  }, {
                    "version_value" : "17.10",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "debian",
            "product" : {
              "product_data" : [ {
                "product_name" : "debian_linux",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "9.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_aus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_tus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.6",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/103848",
          "name" : "103848",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040697",
          "name" : "1040697",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1188",
          "name" : "RHSA-2018:1188",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1191",
          "name" : "RHSA-2018:1191",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1201",
          "name" : "RHSA-2018:1201",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1202",
          "name" : "RHSA-2018:1202",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1203",
          "name" : "RHSA-2018:1203",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1204",
          "name" : "RHSA-2018:1204",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1205",
          "name" : "RHSA-2018:1205",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1206",
          "name" : "RHSA-2018:1206",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1270",
          "name" : "RHSA-2018:1270",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:1278",
          "name" : "RHSA-2018:1278",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "name" : "https://help.ecostruxureit.com/display/public/UADCE725/Security+fixes+in+StruxureWare+Data+Center+Expert+v7.6.0",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201903-14",
          "name" : "GLSA-201903-14",
          "refsource" : "GENTOO",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180419-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03857en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03915en_us",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3644-1/",
          "name" : "USN-3644-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://usn.ubuntu.com/3691-1/",
          "name" : "USN-3691-1",
          "refsource" : "UBUNTU",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4185",
          "name" : "DSA-4185",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4225",
          "name" : "DSA-4225",
          "refsource" : "DEBIAN",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Serialization). Supported versions that are affected are Java SE: 6u181, 7u171, 8u162 and 10; Java SE Embedded: 8u161; JRockit: R28.3.17. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.10.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_171:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_162:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.10.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.17:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*",
          "versionEndExcluding" : "7.6.0"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:hp:xp7_command_view:-:*:*:*:advanced:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-04-19T02:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2938",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/104774",
          "name" : "104774",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041302",
          "name" : "1041302",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180726-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180726-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Java DB). Supported versions that are affected are Java SE: 6u191, 7u181 and 8u172. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. While the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVE-2018-2938 addresses CVE-2018-1313. CVSS 3.0 Base Score 9.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update172:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_172:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.0,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-07-18T13:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2940",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/104768",
          "name" : "104768",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041302",
          "name" : "1041302",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2253",
          "name" : "RHSA-2018:2253",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2254",
          "name" : "RHSA-2018:2254",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2255",
          "name" : "RHSA-2018:2255",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2256",
          "name" : "RHSA-2018:2256",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2568",
          "name" : "RHSA-2018:2568",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2569",
          "name" : "RHSA-2018:2569",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2575",
          "name" : "RHSA-2018:2575",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2576",
          "name" : "RHSA-2018:2576",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2712",
          "name" : "RHSA-2018:2712",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2713",
          "name" : "RHSA-2018:2713",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3007",
          "name" : "RHSA-2018:3007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3008",
          "name" : "RHSA-2018:3008",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180726-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180726-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03882en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03882en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03928en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03928en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 6u191, 7u181, 8u172 and 10.0.1; Java SE Embedded: 8u171. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 4.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update172:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:10.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_172:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:10.0.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "LOW",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.8,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-07-18T13:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2941",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/104775",
          "name" : "104775",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041302",
          "name" : "1041302",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2253",
          "name" : "RHSA-2018:2253",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2254",
          "name" : "RHSA-2018:2254",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2255",
          "name" : "RHSA-2018:2255",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2256",
          "name" : "RHSA-2018:2256",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180726-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180726-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: JavaFX). Supported versions that are affected are Java SE: 7u181, 8u172 and 10.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update172:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:10.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_172:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:10.0.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-07-18T13:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2942",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/104781",
          "name" : "104781",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041302",
          "name" : "1041302",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180726-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180726-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Windows DLL). Supported versions that are affected are Java SE: 7u181 and 8u172. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update172:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_172:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-07-18T13:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2952",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.18",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/104765",
          "name" : "104765",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041302",
          "name" : "1041302",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2241",
          "name" : "RHSA-2018:2241",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2242",
          "name" : "RHSA-2018:2242",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2253",
          "name" : "RHSA-2018:2253",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2254",
          "name" : "RHSA-2018:2254",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2255",
          "name" : "RHSA-2018:2255",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2256",
          "name" : "RHSA-2018:2256",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2283",
          "name" : "RHSA-2018:2283",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2286",
          "name" : "RHSA-2018:2286",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2568",
          "name" : "RHSA-2018:2568",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2569",
          "name" : "RHSA-2018:2569",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2575",
          "name" : "RHSA-2018:2575",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2576",
          "name" : "RHSA-2018:2576",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2712",
          "name" : "RHSA-2018:2712",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2713",
          "name" : "RHSA-2018:2713",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3007",
          "name" : "RHSA-2018:3007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3008",
          "name" : "RHSA-2018:3008",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/11/msg00026.html",
          "name" : "[debian-lts-announce] 20181122 [SECURITY] [DLA 1590-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180726-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180726-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03882en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03882en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03928en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03928en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3734-1/",
          "name" : "USN-3734-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3735-1/",
          "name" : "USN-3735-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3747-1/",
          "name" : "USN-3747-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4268",
          "name" : "DSA-4268",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Concurrency). Supported versions that are affected are Java SE: 6u191, 7u181, 8u172 and 10.0.1; Java SE Embedded: 8u171; JRockit: R28.3.18. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or sandboxed Java applets, such as through a web service. CVSS 3.0 Base Score 3.7 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update172:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:10.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_172:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:10.0.1:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.18:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 3.7,
          "baseSeverity" : "LOW"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-07-18T13:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2964",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/104780",
          "name" : "104780",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041302",
          "name" : "1041302",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2253",
          "name" : "RHSA-2018:2253",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2256",
          "name" : "RHSA-2018:2256",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180726-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180726-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). Supported versions that are affected are Java SE: 8u172 and 10.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update172:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:10.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_172:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:10.0.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-07-18T13:29Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-2973",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "10.0.1",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/104773",
          "name" : "104773",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041302",
          "name" : "1041302",
          "refsource" : "SECTRACK",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2253",
          "name" : "RHSA-2018:2253",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2254",
          "name" : "RHSA-2018:2254",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2255",
          "name" : "RHSA-2018:2255",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2256",
          "name" : "RHSA-2018:2256",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2568",
          "name" : "RHSA-2018:2568",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2569",
          "name" : "RHSA-2018:2569",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2575",
          "name" : "RHSA-2018:2575",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2576",
          "name" : "RHSA-2018:2576",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2712",
          "name" : "RHSA-2018:2712",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2713",
          "name" : "RHSA-2018:2713",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3007",
          "name" : "RHSA-2018:3007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3008",
          "name" : "RHSA-2018:3008",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20180726-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20180726-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03882en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03882en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03928en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03928en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JSSE). Supported versions that are affected are Java SE: 6u191, 7u181, 8u172 and 10.0.1; Java SE Embedded: 8u171. Difficult to exploit vulnerability allows unauthenticated attacker with network access via SSL/TLS to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java SE, Java SE Embedded accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 5.9 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update172:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:10.0.1:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_172:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:10.0.1:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.9,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 4.3
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-07-18T13:29Z",
    "lastModifiedDate" : "2020-09-08T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-3136",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/105601",
          "name" : "105601",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041889",
          "name" : "1041889",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2942",
          "name" : "RHSA-2018:2942",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2943",
          "name" : "RHSA-2018:2943",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3000",
          "name" : "RHSA-2018:3000",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3001",
          "name" : "RHSA-2018:3001",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3002",
          "name" : "RHSA-2018:3002",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3003",
          "name" : "RHSA-2018:3003",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3007",
          "name" : "RHSA-2018:3007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3008",
          "name" : "RHSA-2018:3008",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3350",
          "name" : "RHSA-2018:3350",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3409",
          "name" : "RHSA-2018:3409",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3521",
          "name" : "RHSA-2018:3521",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3533",
          "name" : "RHSA-2018:3533",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3534",
          "name" : "RHSA-2018:3534",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3671",
          "name" : "RHSA-2018:3671",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3672",
          "name" : "RHSA-2018:3672",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3779",
          "name" : "RHSA-2018:3779",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3852",
          "name" : "RHSA-2018:3852",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/11/msg00026.html",
          "name" : "[debian-lts-announce] 20181122 [SECURITY] [DLA 1590-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201908-10",
          "name" : "GLSA-201908-10",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03952en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03952en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3804-1/",
          "name" : "USN-3804-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3824-1/",
          "name" : "USN-3824-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4326",
          "name" : "DSA-4326",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u201, 7u191, 8u182 and 11; Java SE Embedded: 8u181. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets (in Java SE 8), that load and run untrusted code (e.g. code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g. code installed by an administrator). CVSS 3.0 Base Score 3.4 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:N/I:L/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update182:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:11.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_182:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:11.0.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:N/I:L/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "NONE",
          "baseScore" : 3.4,
          "baseSeverity" : "LOW"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-10-17T01:31Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-3139",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/105602",
          "name" : "105602",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041889",
          "name" : "1041889",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2942",
          "name" : "RHSA-2018:2942",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2943",
          "name" : "RHSA-2018:2943",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3000",
          "name" : "RHSA-2018:3000",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3001",
          "name" : "RHSA-2018:3001",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3002",
          "name" : "RHSA-2018:3002",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3003",
          "name" : "RHSA-2018:3003",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3007",
          "name" : "RHSA-2018:3007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3008",
          "name" : "RHSA-2018:3008",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3350",
          "name" : "RHSA-2018:3350",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3409",
          "name" : "RHSA-2018:3409",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3521",
          "name" : "RHSA-2018:3521",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3533",
          "name" : "RHSA-2018:3533",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3534",
          "name" : "RHSA-2018:3534",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3671",
          "name" : "RHSA-2018:3671",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3672",
          "name" : "RHSA-2018:3672",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3779",
          "name" : "RHSA-2018:3779",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3852",
          "name" : "RHSA-2018:3852",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/11/msg00026.html",
          "name" : "[debian-lts-announce] 20181122 [SECURITY] [DLA 1590-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201908-10",
          "name" : "GLSA-201908-10",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03952en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03952en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3804-1/",
          "name" : "USN-3804-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3824-1/",
          "name" : "USN-3824-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4326",
          "name" : "DSA-4326",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Networking). Supported versions that are affected are Java SE: 6u201, 7u191, 8u182 and 11; Java SE Embedded: 8u181. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets (in Java SE 8), that load and run untrusted code (e.g. code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g. code installed by an administrator). CVSS 3.0 Base Score 3.1 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update182:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:11.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_182:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:11.0.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "LOW",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 3.1,
          "baseSeverity" : "LOW"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:N/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "NONE",
          "baseScore" : 2.6
        },
        "severity" : "LOW",
        "exploitabilityScore" : 4.9,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-10-17T01:31Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-3149",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.19",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/105608",
          "name" : "105608",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041889",
          "name" : "1041889",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2942",
          "name" : "RHSA-2018:2942",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2943",
          "name" : "RHSA-2018:2943",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3000",
          "name" : "RHSA-2018:3000",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3001",
          "name" : "RHSA-2018:3001",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3002",
          "name" : "RHSA-2018:3002",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3003",
          "name" : "RHSA-2018:3003",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3007",
          "name" : "RHSA-2018:3007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3008",
          "name" : "RHSA-2018:3008",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3350",
          "name" : "RHSA-2018:3350",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3409",
          "name" : "RHSA-2018:3409",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3521",
          "name" : "RHSA-2018:3521",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3533",
          "name" : "RHSA-2018:3533",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3534",
          "name" : "RHSA-2018:3534",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3671",
          "name" : "RHSA-2018:3671",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3672",
          "name" : "RHSA-2018:3672",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3779",
          "name" : "RHSA-2018:3779",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3852",
          "name" : "RHSA-2018:3852",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/11/msg00026.html",
          "name" : "[debian-lts-announce] 20181122 [SECURITY] [DLA 1590-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201908-10",
          "name" : "GLSA-201908-10",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03952en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03952en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3804-1/",
          "name" : "USN-3804-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3824-1/",
          "name" : "USN-3824-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4326",
          "name" : "DSA-4326",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JNDI). Supported versions that are affected are Java SE: 6u201, 7u191, 8u182 and 11; Java SE Embedded: 8u181; JRockit: R28.3.19. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, JRockit, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded, JRockit. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets (in Java SE 8), that load and run untrusted code (e.g. code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g. through a web service which supplies data to the APIs. CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:11.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:11.0.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.19:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-10-17T01:31Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-3169",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/105587",
          "name" : "105587",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041889",
          "name" : "1041889",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2942",
          "name" : "RHSA-2018:2942",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2943",
          "name" : "RHSA-2018:2943",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3000",
          "name" : "RHSA-2018:3000",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3001",
          "name" : "RHSA-2018:3001",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3002",
          "name" : "RHSA-2018:3002",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3003",
          "name" : "RHSA-2018:3003",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3350",
          "name" : "RHSA-2018:3350",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3409",
          "name" : "RHSA-2018:3409",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3521",
          "name" : "RHSA-2018:3521",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3533",
          "name" : "RHSA-2018:3533",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3534",
          "name" : "RHSA-2018:3534",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3671",
          "name" : "RHSA-2018:3671",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3672",
          "name" : "RHSA-2018:3672",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3779",
          "name" : "RHSA-2018:3779",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3852",
          "name" : "RHSA-2018:3852",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/11/msg00026.html",
          "name" : "[debian-lts-announce] 20181122 [SECURITY] [DLA 1590-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201908-10",
          "name" : "GLSA-201908-10",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03952en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03952en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3804-1/",
          "name" : "USN-3804-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3824-1/",
          "name" : "USN-3824-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4326",
          "name" : "DSA-4326",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). Supported versions that are affected are Java SE: 7u191, 8u182 and 11; Java SE Embedded: 8u181. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets (in Java SE 8), that load and run untrusted code (e.g. code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g. code installed by an administrator). CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:11.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:11.0.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-10-17T01:31Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-3180",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.19",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/105617",
          "name" : "105617",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041889",
          "name" : "1041889",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2942",
          "name" : "RHSA-2018:2942",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2943",
          "name" : "RHSA-2018:2943",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3000",
          "name" : "RHSA-2018:3000",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3001",
          "name" : "RHSA-2018:3001",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3002",
          "name" : "RHSA-2018:3002",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3003",
          "name" : "RHSA-2018:3003",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3007",
          "name" : "RHSA-2018:3007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3008",
          "name" : "RHSA-2018:3008",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3350",
          "name" : "RHSA-2018:3350",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3409",
          "name" : "RHSA-2018:3409",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3521",
          "name" : "RHSA-2018:3521",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3533",
          "name" : "RHSA-2018:3533",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3534",
          "name" : "RHSA-2018:3534",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3671",
          "name" : "RHSA-2018:3671",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3672",
          "name" : "RHSA-2018:3672",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3779",
          "name" : "RHSA-2018:3779",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3852",
          "name" : "RHSA-2018:3852",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/11/msg00026.html",
          "name" : "[debian-lts-announce] 20181122 [SECURITY] [DLA 1590-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201908-10",
          "name" : "GLSA-201908-10",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03952en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03952en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3804-1/",
          "name" : "USN-3804-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3824-1/",
          "name" : "USN-3824-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4326",
          "name" : "DSA-4326",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JSSE). Supported versions that are affected are Java SE: 6u201, 7u191, 8u182 and 11; Java SE Embedded: 8u181; JRockit: R28.3.19. Difficult to exploit vulnerability allows unauthenticated attacker with network access via SSL/TLS to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Java SE, Java SE Embedded, JRockit accessible data as well as unauthorized read access to a subset of Java SE, Java SE Embedded, JRockit accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets (in Java SE 8), that load and run untrusted code (e.g. code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g. through a web service which supplies data to the APIs. CVSS 3.0 Base Score 5.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update182:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:11.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_182:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:11.0.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.19:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "LOW",
          "integrityImpact" : "LOW",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.6,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 3.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-10-17T01:31Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-3183",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.19",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/105622",
          "name" : "105622",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041889",
          "name" : "1041889",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2942",
          "name" : "RHSA-2018:2942",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2943",
          "name" : "RHSA-2018:2943",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3002",
          "name" : "RHSA-2018:3002",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3003",
          "name" : "RHSA-2018:3003",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3521",
          "name" : "RHSA-2018:3521",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3533",
          "name" : "RHSA-2018:3533",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3534",
          "name" : "RHSA-2018:3534",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3852",
          "name" : "RHSA-2018:3852",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201908-10",
          "name" : "GLSA-201908-10",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03952en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03952en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3804-1/",
          "name" : "USN-3804-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4326",
          "name" : "DSA-4326",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Scripting). Supported versions that are affected are Java SE: 8u182 and 11; Java SE Embedded: 8u181; JRockit: R28.3.19. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. While the vulnerability is in Java SE, Java SE Embedded, JRockit, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded, JRockit. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets (in Java SE 8), that load and run untrusted code (e.g. code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g. through a web service which supplies data to the APIs. CVSS 3.0 Base Score 9.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:11.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:11.0.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.19:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 9.0,
          "baseSeverity" : "CRITICAL"
        },
        "exploitabilityScore" : 2.2,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 6.8
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 8.6,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-10-17T01:31Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-3209",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/105590",
          "name" : "105590",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041889",
          "name" : "1041889",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3002",
          "name" : "RHSA-2018:3002",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3003",
          "name" : "RHSA-2018:3003",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201908-10",
          "name" : "GLSA-201908-10",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE component of Oracle Java SE (subcomponent: JavaFX). The supported version that is affected is Java SE: 8u182. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets (in Java SE 8), that load and run untrusted code (e.g. code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g. code installed by an administrator). CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_181:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "HIGH",
          "privilegesRequired" : "NONE",
          "userInteraction" : "REQUIRED",
          "scope" : "CHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 8.3,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.6,
        "impactScore" : 6.0
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:H/Au:N/C:P/I:P/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "HIGH",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.1
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 4.9,
        "impactScore" : 6.4,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-10-17T01:31Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-3211",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "11.0.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/105591",
          "name" : "105591",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041889",
          "name" : "1041889",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3002",
          "name" : "RHSA-2018:3002",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3003",
          "name" : "RHSA-2018:3003",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201908-10",
          "name" : "GLSA-201908-10",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Serviceability). Supported versions that are affected are Java SE: 8u182 and 11; Java SE Embedded: 8u181. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Java SE, Java SE Embedded executes to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java SE, Java SE Embedded accessible data as well as unauthorized access to critical data or complete access to all Java SE, Java SE Embedded accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets (in Java SE 8), that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g. code installed by an administrator). This vulnerability can only be exploited when Java Usage Tracker functionality is being used. CVSS 3.0 Base Score 6.6 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:11.0.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_181:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:11.0.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N",
          "attackVector" : "LOCAL",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "LOW",
          "userInteraction" : "REQUIRED",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "NONE",
          "baseScore" : 6.6,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 1.3,
        "impactScore" : 5.2
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:M/Au:N/C:P/I:P/A:N",
          "accessVector" : "LOCAL",
          "accessComplexity" : "MEDIUM",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 3.3
        },
        "severity" : "LOW",
        "exploitabilityScore" : 3.4,
        "impactScore" : 4.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : true
      }
    },
    "publishedDate" : "2018-10-17T01:31Z",
    "lastModifiedDate" : "2020-09-08T12:29Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-3214",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "oracle",
            "product" : {
              "product_data" : [ {
                "product_name" : "jdk",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jre",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "1.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1.8.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "jrockit",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "r28.3.19",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "redhat",
            "product" : {
              "product_data" : [ {
                "product_name" : "enterprise_linux_desktop",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_server_eus",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "7.5",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "enterprise_linux_workstation",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "7.0",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "name" : "http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/105615",
          "name" : "105615",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1041889",
          "name" : "1041889",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2942",
          "name" : "RHSA-2018:2942",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:2943",
          "name" : "RHSA-2018:2943",
          "refsource" : "REDHAT",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3000",
          "name" : "RHSA-2018:3000",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3001",
          "name" : "RHSA-2018:3001",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3002",
          "name" : "RHSA-2018:3002",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3003",
          "name" : "RHSA-2018:3003",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3007",
          "name" : "RHSA-2018:3007",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3008",
          "name" : "RHSA-2018:3008",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3350",
          "name" : "RHSA-2018:3350",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3409",
          "name" : "RHSA-2018:3409",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3533",
          "name" : "RHSA-2018:3533",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3534",
          "name" : "RHSA-2018:3534",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3671",
          "name" : "RHSA-2018:3671",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3672",
          "name" : "RHSA-2018:3672",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3779",
          "name" : "RHSA-2018:3779",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://access.redhat.com/errata/RHSA-2018:3852",
          "name" : "RHSA-2018:3852",
          "refsource" : "REDHAT",
          "tags" : [ ]
        }, {
          "url" : "https://lists.debian.org/debian-lts-announce/2018/11/msg00026.html",
          "name" : "[debian-lts-announce] 20181122 [SECURITY] [DLA 1590-1] openjdk-7 security update",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.gentoo.org/glsa/201908-10",
          "name" : "GLSA-201908-10",
          "refsource" : "GENTOO",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "name" : "https://security.netapp.com/advisory/ntap-20181018-0001/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03952en_us",
          "name" : "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03952en_us",
          "refsource" : "CONFIRM",
          "tags" : [ ]
        }, {
          "url" : "https://usn.ubuntu.com/3804-1/",
          "name" : "USN-3804-1",
          "refsource" : "UBUNTU",
          "tags" : [ ]
        }, {
          "url" : "https://www.debian.org/security/2018/dsa-4326",
          "name" : "DSA-4326",
          "refsource" : "DEBIAN",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Sound). Supported versions that are affected are Java SE: 6u201, 7u191 and 8u182; Java SE Embedded: 8u181; JRockit: R28.3.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets (in Java SE 8), that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g. through a web service which supplies data to the APIs. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.6.0:update_201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.7.0:update191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jdk:1.8.0:update182:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.6.0:update_201:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.7.0:update_191:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jre:1.8.0:update_182:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:oracle:jrockit:r28.3.19:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "LOW",
          "baseScore" : 5.3,
          "baseSeverity" : "MEDIUM"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 1.4
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-10-17T01:31Z",
    "lastModifiedDate" : "2020-09-08T13:00Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-5165",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/104139",
          "name" : "104139",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "http://www.securitytracker.com/id/1040896",
          "name" : "1040896",
          "refsource" : "SECTRACK",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://bugzilla.mozilla.org/show_bug.cgi?id=1451452",
          "name" : "https://bugzilla.mozilla.org/show_bug.cgi?id=1451452",
          "refsource" : "CONFIRM",
          "tags" : [ "Exploit", "Issue Tracking", "Patch", "Vendor Advisory" ]
        }, {
          "url" : "https://www.mozilla.org/security/advisories/mfsa2018-11/",
          "name" : "https://www.mozilla.org/security/advisories/mfsa2018-11/",
          "refsource" : "CONFIRM",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "In 32-bit versions of Firefox, the Adobe Flash plugin setting for \"Enable Adobe Flash protected mode\" is unchecked by default even though the Adobe Flash sandbox is actually enabled. The displayed state is the reverse of the true setting, resulting in user confusion. This could cause users to select this setting intending to activate it and inadvertently turn protections off. This vulnerability affects Firefox < 60."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:x86:*",
          "versionEndExcluding" : "60.0"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "NONE",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : true,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-06-11T21:29Z",
    "lastModifiedDate" : "2020-09-11T16:45Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2018-8599",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "microsoft",
            "product" : {
              "product_data" : [ {
                "product_name" : "visual_studio",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2015",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "visual_studio_2017",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "15.9",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "windows_10",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1607",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1703",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1709",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1803",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1809",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "windows_server_2016",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1709",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1803",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "windows_server_2019",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-273"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://www.securityfocus.com/bid/106094",
          "name" : "106094",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8599",
          "name" : "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8599",
          "refsource" : "CONFIRM",
          "tags" : [ "Patch", "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service improperly impersonates certain file operations, aka \"Diagnostics Hub Standard Collector Service Elevation of Privilege Vulnerability.\" This affects Microsoft Visual Studio, Windows Server 2019, Windows Server 2016, Windows 10, Windows 10 Servers."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:microsoft:visual_studio:2015:update3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:microsoft:visual_studio_2017:15.9:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_10:1607:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_10:1703:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_10:1709:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_server_2016:1709:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_server_2016:1803:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
          "attackVector" : "LOCAL",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "LOW",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.8,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.8,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:P/I:P/A:P",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "PARTIAL",
          "integrityImpact" : "PARTIAL",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 4.6
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 3.9,
        "impactScore" : 6.4,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2018-12-12T00:29Z",
    "lastModifiedDate" : "2020-09-14T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2019-0222",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "apache",
            "product" : {
              "product_data" : [ {
                "product_name" : "activemq",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "5.0.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.1.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.2.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.3.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.3.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.3.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.4.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.4.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.4.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.4.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.5.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.5.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.6.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.7.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.8.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.9.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.9.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.10.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.10.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.10.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.11.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.12.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.12.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.12.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.12.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.13.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.14.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.14.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.14.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.14.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.14.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.14.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.15.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.15.1",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.15.2",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.15.3",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.15.4",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.15.5",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.15.6",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.15.7",
                    "version_affected" : "="
                  }, {
                    "version_value" : "5.15.8",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          }, {
            "vendor_name" : "netapp",
            "product" : {
              "product_data" : [ {
                "product_name" : "e-series_santricity_web_services",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-94"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "http://activemq.apache.org/security-advisories.data/CVE-2019-0222-announcement.txt",
          "name" : "http://activemq.apache.org/security-advisories.data/CVE-2019-0222-announcement.txt",
          "refsource" : "CONFIRM",
          "tags" : [ "Mitigation", "Third Party Advisory" ]
        }, {
          "url" : "http://www.openwall.com/lists/oss-security/2019/03/27/2",
          "name" : "[oss-security] 20190327 [ANNOUNCE] CVE-2019-0222 - Apache ActiveMQ: Corrupt MQTT frame can cause broker shutdown",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Third Party Advisory" ]
        }, {
          "url" : "http://www.securityfocus.com/bid/107622",
          "name" : "107622",
          "refsource" : "BID",
          "tags" : [ "Third Party Advisory", "VDB Entry" ]
        }, {
          "url" : "https://lists.apache.org/thread.html/03f91b1fb85686a848cee6b90112cf6059bd1b21b23bacaa11a962e1@%3Cdev.activemq.apache.org%3E",
          "name" : "[activemq-dev] 20190328 Re: Website",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Vendor Advisory" ]
        }, {
          "url" : "https://lists.apache.org/thread.html/2b5c0039197a4949f29e1e2c9441ab38d242946b966f61c110808bcc@%3Ccommits.activemq.apache.org%3E",
          "name" : "[activemq-commits] 20190327 [CONF] Apache ActiveMQ > Security Advisories",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Vendor Advisory" ]
        }, {
          "url" : "https://lists.apache.org/thread.html/71640324661c1b6d0b6708bd4fb20170e1b979370a4b8cddc4f8d485@%3Cdev.activemq.apache.org%3E",
          "name" : "[activemq-dev] 20190327 CVE-2019-0222 - Apache ActiveMQ: Corrupt MQTT frame can cause broker shutdown",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Vendor Advisory" ]
        }, {
          "url" : "https://lists.apache.org/thread.html/7da9636557118178b1690ba0af49c8a7b7b97d925218b5774622f488@%3Cusers.activemq.apache.org%3E",
          "name" : "[activemq-users] 20190327 CVE-2019-0222 - Apache ActiveMQ: Corrupt MQTT frame can cause broker shutdown",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Vendor Advisory" ]
        }, {
          "url" : "https://lists.apache.org/thread.html/a859563f05fbe7c31916b3178c2697165bd9bbf5a65d1cf62aef27d2@%3Ccommits.activemq.apache.org%3E",
          "name" : "[activemq-commits] 20190327 svn commit: r1042639 - in /websites/production/activemq/content/activemq-website: ./ projects/artemis/download/ projects/classic/download/ projects/cms/download/ security-advisories.data/",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Vendor Advisory" ]
        }, {
          "url" : "https://lists.apache.org/thread.html/d1e334bd71d6e68462c62c726fe6db565c7a6283302f9c1feed087fa@%3Ccommits.activemq.apache.org%3E",
          "name" : "[activemq-commits] 20190327 svn commit: r1042603 - /websites/production/activemq/content/security-advisories.data/CVE-2019-0222-announcement.txt",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Vendor Advisory" ]
        }, {
          "url" : "https://lists.apache.org/thread.html/fcbe6ad00f1de142148c20d813fae3765dc4274955e3e2f3ca19ff7b@%3Cdev.activemq.apache.org%3E",
          "name" : "[activemq-dev] 20190327 Re: Website",
          "refsource" : "MLIST",
          "tags" : [ "Mailing List", "Vendor Advisory" ]
        }, {
          "url" : "https://lists.apache.org/thread.html/rb698ed085f79e56146ca24ab359c9ef95846618675ea1ef402e04a6d@%3Ccommits.activemq.apache.org%3E",
          "name" : "[activemq-commits] 20200514 [activemq-website] branch master updated: Publish CVE-2020-1941 security advisory",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://lists.apache.org/thread.html/re4672802b0e5ed67c08c9e77057d52138e062f77cc09581b723cf95a@%3Ccommits.activemq.apache.org%3E",
          "name" : "[activemq-commits] 20200910 [activemq-website] branch master updated: Publish CVE-2020-11998",
          "refsource" : "MLIST",
          "tags" : [ ]
        }, {
          "url" : "https://security.netapp.com/advisory/ntap-20190502-0006/",
          "name" : "https://security.netapp.com/advisory/ntap-20190502-0006/",
          "refsource" : "CONFIRM",
          "tags" : [ "Third Party Advisory" ]
        }, {
          "url" : "https://www.oracle.com/security-alerts/cpuapr2020.html",
          "name" : "N/A",
          "refsource" : "N/A",
          "tags" : [ ]
        }, {
          "url" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "name" : "https://www.oracle.com/security-alerts/cpujul2020.html",
          "refsource" : "MISC",
          "tags" : [ ]
        }, {
          "url" : "https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html",
          "name" : "https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "In Apache ActiveMQ 5.0.0 - 5.15.8, unmarshalling corrupt MQTT frame can lead to broker Out of Memory exception making it unresponsive."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:apache:activemq:*:*:*:*:*:*:*:*",
          "versionStartIncluding" : "5.0.0",
          "versionEndIncluding" : "5.15.8"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:netapp:e-series_santricity_web_services:-:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
          "attackVector" : "NETWORK",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "NONE",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.5,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 3.9,
        "impactScore" : 3.6
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "accessVector" : "NETWORK",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "NONE",
          "integrityImpact" : "NONE",
          "availabilityImpact" : "PARTIAL",
          "baseScore" : 5.0
        },
        "severity" : "MEDIUM",
        "exploitabilityScore" : 10.0,
        "impactScore" : 2.9,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2019-03-28T22:29Z",
    "lastModifiedDate" : "2020-09-10T11:15Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2019-0230",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://cwiki.apache.org/confluence/display/ww/s2-059",
          "name" : "https://cwiki.apache.org/confluence/display/ww/s2-059",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "Apache Struts 2.0.0 to 2.5.20 forced double OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ ]
    },
    "impact" : { },
    "publishedDate" : "2020-09-14T17:15Z",
    "lastModifiedDate" : "2020-09-14T17:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2019-0233",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://cwiki.apache.org/confluence/display/ww/s2-060",
          "name" : "https://cwiki.apache.org/confluence/display/ww/s2-060",
          "refsource" : "MISC",
          "tags" : [ ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An access permission override in Apache Struts 2.0.0 to 2.5.20 may cause a Denial of Service when performing a file upload."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ ]
    },
    "impact" : { },
    "publishedDate" : "2020-09-14T17:15Z",
    "lastModifiedDate" : "2020-09-14T17:30Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2019-0727",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "microsoft",
            "product" : {
              "product_data" : [ {
                "product_name" : "visual_studio",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "2015",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "visual_studio_2017",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "15.0",
                    "version_affected" : "="
                  }, {
                    "version_value" : "15.9",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "visual_studio_2019",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "16.0",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "windows_10",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1607",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1703",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1709",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1803",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1809",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1903",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "windows_server_2016",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1803",
                    "version_affected" : "="
                  }, {
                    "version_value" : "1903",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "windows_server_2019",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "NVD-CWE-noinfo"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0727",
          "name" : "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0727",
          "refsource" : "MISC",
          "tags" : [ "Patch", "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector or the Visual Studio Standard Collector allows file deletion in arbitrary locations.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Diagnostic Hub Standard Collector, Visual Studio Standard Collector Elevation of Privilege Vulnerability'."
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:microsoft:visual_studio:2015:update3:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:microsoft:visual_studio_2017:15.0:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:microsoft:visual_studio_2017:15.9:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:a:microsoft:visual_studio_2019:16.0:*:*:*:*:*:*:*"
        } ]
      }, {
        "operator" : "OR",
        "cpe_match" : [ {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_10:1607:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_10:1703:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_10:1709:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_10:1903:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_server_2016:1803:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_server_2016:1903:*:*:*:*:*:*:*"
        }, {
          "vulnerable" : true,
          "cpe23Uri" : "cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:*"
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV3" : {
        "cvssV3" : {
          "version" : "3.0",
          "vectorString" : "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
          "attackVector" : "LOCAL",
          "attackComplexity" : "LOW",
          "privilegesRequired" : "LOW",
          "userInteraction" : "NONE",
          "scope" : "UNCHANGED",
          "confidentialityImpact" : "HIGH",
          "integrityImpact" : "HIGH",
          "availabilityImpact" : "HIGH",
          "baseScore" : 7.8,
          "baseSeverity" : "HIGH"
        },
        "exploitabilityScore" : 1.8,
        "impactScore" : 5.9
      },
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2019-05-16T19:29Z",
    "lastModifiedDate" : "2020-09-14T12:59Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2019-10527",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qualcomm",
            "product" : {
              "product_data" : [ {
                "product_name" : "apq8009_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "apq8017_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "apq8053_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "apq8096au_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "apq8098_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "bitra_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "ipq6018_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "ipq8074_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "kamorta_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "mdm9150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "mdm9205_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "mdm9206_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "mdm9207c_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "mdm9607_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "mdm9640_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "mdm9650_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8905_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8909_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8909w_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8917_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8920_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8937_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8940_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8953_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8996_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8996au_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8998_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "nicobar_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qca4531_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qca6574au_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qca8081_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcm2150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcn7605_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcn7606_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcs404_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcs405_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcs605_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcs610_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qm215_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "rennell_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sa415m_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sa515m_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sa6155p_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "saipan_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sc7180_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sc8180x_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sda660_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sda845_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm429_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm429w_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm439_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm450_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm630_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm632_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm636_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm660_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm670_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm710_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm845_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm850_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdx20_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdx24_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdx55_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm6150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm7150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm8150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm8250_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sxr1130_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sxr2130_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-129"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-bulletin",
          "name" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-bulletin",
          "refsource" : "CONFIRM",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-security-bulletin",
          "name" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-security-bulletin",
          "refsource" : "MISC",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "u'SMEM partition can be manipulated in case of any compromise on HLOS, thus resulting in access to memory outside of SMEM address range which could lead to memory corruption' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096AU, APQ8098, Bitra, IPQ6018, IPQ8074, Kamorta, MDM9150, MDM9205, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, Nicobar, QCA4531, QCA6574AU, QCA8081, QCM2150, QCN7605, QCN7606, QCS404, QCS405, QCS605, QCS610, QM215, Rennell, SA415M, SA515M, SA6155P, Saipan, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:apq8009_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:apq8009:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:apq8017_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:apq8017:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:apq8053_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:apq8053:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:apq8096au_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:apq8096au:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:apq8098_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:apq8098:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:bitra_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:bitra:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:ipq6018_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:ipq6018:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:ipq8074_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:ipq8074:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:kamorta_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:kamorta:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:mdm9150_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:mdm9150:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:mdm9205_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:mdm9205:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:mdm9206_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:mdm9206:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:mdm9207c_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:mdm9207c:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:mdm9607_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:mdm9607:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:mdm9640_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:mdm9640:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:mdm9650_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:mdm9650:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8905_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8905:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8909_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8909:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8909w_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8909w:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8917_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8917:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8920_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8920:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8937_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8937:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8940_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8940:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8953_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8953:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8996_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8996:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8996au_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8996au:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8998_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8998:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:nicobar_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:nicobar:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qca4531_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qca4531:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qca6574au_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qca6574au:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qca8081_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qca8081:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qcm2150_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qcm2150:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qcn7605_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qcn7605:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qcn7606_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qcn7606:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qcs404_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qcs404:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qcs405_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qcs405:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qcs605_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qcs605:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qcs610_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qcs610:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qm215_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qm215:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:rennell_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:rennell:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sa415m_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sa415m:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sa515m_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sa515m:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sa6155p_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sa6155p:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:saipan_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:saipan:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sc7180_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sc7180:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sc8180x_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sc8180x:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sda660_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sda660:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sda845_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sda845:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm429_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm429:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm429w_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm429w:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm439_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm439:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm450_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm450:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm630_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm630:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm632_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm632:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm636_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm636:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm660_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm660:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm670_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm670:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm710_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm710:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm845_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm845:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm850_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm850:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdx20_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdx20:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdx24_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdx24:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdx55_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdx55:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sm6150_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sm6150:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sm7150_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sm7150:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sm8150_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sm8150:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sm8250_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sm8250:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sxr1130_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sxr1130:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sxr2130_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sxr2130:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-08T10:15Z",
    "lastModifiedDate" : "2020-09-11T14:12Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2019-10562",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qualcomm",
            "product" : {
              "product_data" : [ {
                "product_name" : "ipq6018_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "kamorta_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8998_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "nicobar_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcs404_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcs605_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcs610_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "rennell_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sa415m_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sa6155p_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sc7180_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sda660_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sda845_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm630_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm636_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm660_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm670_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm710_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm845_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm850_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdx24_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdx55_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm6150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm7150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm8150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm8250_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sxr1130_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sxr2130_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-287"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-bulletin",
          "name" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-bulletin",
          "refsource" : "CONFIRM",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-security-bulletin",
          "name" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-security-bulletin",
          "refsource" : "MISC",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "u'Improper authentication and signature verification of debug polices in secure boot loader will allow unverified debug policies to be loaded into secure memory and leads to memory corruption' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in IPQ6018, Kamorta, MSM8998, Nicobar, QCS404, QCS605, QCS610, Rennell, SA415M, SA6155P, SC7180, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:ipq6018_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:ipq6018:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:kamorta_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:kamorta:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8998_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8998:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:nicobar_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:nicobar:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qcs404_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qcs404:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qcs605_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qcs605:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qcs610_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qcs610:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:rennell_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:rennell:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sa415m_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sa415m:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sa6155p_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sa6155p:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sc7180_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sc7180:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sda660_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sda660:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sda845_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sda845:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm630_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm630:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm636_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm636:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm660_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm660:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm670_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm670:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm710_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm710:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm845_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm845:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm850_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm850:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdx24_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdx24:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdx55_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdx55:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sm6150_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sm6150:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sm7150_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sm7150:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sm8150_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sm8150:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sm8250_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sm8250:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sxr1130_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sxr1130:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sxr2130_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sxr2130:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-08T10:15Z",
    "lastModifiedDate" : "2020-09-11T14:06Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2019-10596",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qualcomm",
            "product" : {
              "product_data" : [ {
                "product_name" : "bitra_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "nicobar_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcs605_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcs610_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "rennell_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sa6155p_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "saipan_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sc7180_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sc8180x_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm670_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm710_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm845_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm850_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm6150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm7150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm8150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm8250_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sxr1130_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sxr2130_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-863"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-bulletin",
          "name" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-bulletin",
          "refsource" : "CONFIRM",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-security-bulletin",
          "name" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-security-bulletin",
          "refsource" : "MISC",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "u'Improper access control can lead signed process to guess pid of other processes and access their address space' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in Bitra, Nicobar, QCS605, QCS610, Rennell, SA6155P, Saipan, SC7180, SC8180X, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:bitra_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:bitra:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:nicobar_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:nicobar:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qcs605_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qcs605:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qcs610_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qcs610:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:rennell_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:rennell:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sa6155p_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sa6155p:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:saipan_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:saipan:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sc7180_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sc7180:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sc8180x_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sc8180x:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm670_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm670:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm710_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm710:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm845_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm845:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sdm850_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sdm850:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sm6150_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sm6150:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sm7150_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sm7150:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sm8150_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sm8150:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sm8250_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sm8250:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sxr1130_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sxr1130:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:sxr2130_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:sxr2130:-:*:*:*:*:*:*:*"
          } ]
        } ]
      } ]
    },
    "impact" : {
      "baseMetricV2" : {
        "cvssV2" : {
          "version" : "2.0",
          "vectorString" : "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "accessVector" : "LOCAL",
          "accessComplexity" : "LOW",
          "authentication" : "NONE",
          "confidentialityImpact" : "COMPLETE",
          "integrityImpact" : "COMPLETE",
          "availabilityImpact" : "COMPLETE",
          "baseScore" : 7.2
        },
        "severity" : "HIGH",
        "exploitabilityScore" : 3.9,
        "impactScore" : 10.0,
        "acInsufInfo" : false,
        "obtainAllPrivilege" : false,
        "obtainUserPrivilege" : false,
        "obtainOtherPrivilege" : false,
        "userInteractionRequired" : false
      }
    },
    "publishedDate" : "2020-09-08T10:15Z",
    "lastModifiedDate" : "2020-09-11T13:56Z"
  }, {
    "cve" : {
      "data_type" : "CVE",
      "data_format" : "MITRE",
      "data_version" : "4.0",
      "CVE_data_meta" : {
        "ID" : "CVE-2019-10615",
        "ASSIGNER" : "cve@mitre.org"
      },
      "affects" : {
        "vendor" : {
          "vendor_data" : [ {
            "vendor_name" : "qualcomm",
            "product" : {
              "product_data" : [ {
                "product_name" : "apq8009_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "apq8017_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "apq8053_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "apq8096au_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "apq8098_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "kamorta_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "mdm9150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "mdm9205_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "mdm9206_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "mdm9607_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "mdm9650_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8905_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8909_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8909w_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8917_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8920_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8937_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8940_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8953_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8996_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8996au_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "msm8998_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "nicobar_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcm2150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcs404_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcs405_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcs605_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qcs610_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "qm215_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "rennell_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sa415m_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sa515m_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sa6155p_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sc7180_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sc8180x_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sda660_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sda845_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm429_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm429w_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm439_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm450_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm630_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm632_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm636_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm660_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm670_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm710_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm845_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdm850_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdx24_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sdx55_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm6150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm7150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm8150_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sm8250_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sxr1130_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              }, {
                "product_name" : "sxr2130_firmware",
                "version" : {
                  "version_data" : [ {
                    "version_value" : "-",
                    "version_affected" : "="
                  } ]
                }
              } ]
            }
          } ]
        }
      },
      "problemtype" : {
        "problemtype_data" : [ {
          "description" : [ {
            "lang" : "en",
            "value" : "CWE-190"
          } ]
        } ]
      },
      "references" : {
        "reference_data" : [ {
          "url" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-bulletin",
          "name" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-bulletin",
          "refsource" : "CONFIRM",
          "tags" : [ "Broken Link" ]
        }, {
          "url" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-security-bulletin",
          "name" : "https://www.qualcomm.com/company/product-security/bulletins/august-2020-security-bulletin",
          "refsource" : "MISC",
          "tags" : [ "Vendor Advisory" ]
        } ]
      },
      "description" : {
        "description_data" : [ {
          "lang" : "en",
          "value" : "u'Possibility of integer overflow in keymaster 4 while allocating memory due to multiplication of large numcerts value and size of keymaster bob which can lead to memory corruption' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096AU, APQ8098, Kamorta, MDM9150, MDM9205, MDM9206, MDM9607, MDM9650, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS404, QCS405, QCS605, QCS610, QM215, Rennell, SA415M, SA515M, SA6155P, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130"
        } ]
      }
    },
    "configurations" : {
      "CVE_data_version" : "4.0",
      "nodes" : [ {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:apq8009_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:apq8009:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:apq8017_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:apq8017:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:apq8053_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:apq8053:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:apq8096au_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:apq8096au:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:apq8098_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:apq8098:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:kamorta_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:kamorta:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:mdm9150_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:mdm9150:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:mdm9205_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:mdm9205:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:mdm9206_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:mdm9206:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:mdm9607_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:mdm9607:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:mdm9650_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:mdm9650:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8905_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8905:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8909_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8909:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8909w_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8909w:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8917_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8917:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8920_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8920:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8937_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8937:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8940_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8940:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8953_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8953:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8996_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8996:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8996au_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8996au:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:msm8998_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:msm8998:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:nicobar_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:nicobar:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : true,
            "cpe23Uri" : "cpe:2.3:o:qualcomm:qcm2150_firmware:-:*:*:*:*:*:*:*"
          } ]
        }, {
          "operator" : "OR",
          "cpe_match" : [ {
            "vulnerable" : false,
            "cpe23Uri" : "cpe:2.3:h:qualcomm:qcm2150:-:*:*:*:*:*:*:*"
          } ]
        } ]
      }, {
        "operator" : "AND",
        "children" : [ {
          "operator" : "OR",