Oracle Java SE Remote Vulnerabilities (CVE-2018-2633)
Oracle Java SE Remote Vulnerabilities (CVE-2018-2633)
Release date:
Updated on:
Affected Systems:
Oracle JRockit R28.3.16
Oracle Java SE 9.0.1
Oracle Java SE 8u152
Oracle Java SE 7u161
Oracle Java SE 6u171
Oracle Java SE Embedded 8u151
Description:
Bugtraq id: 102557
CVE (CAN) ID: CVE-2018-2633
Java SE is short for Java platform standard edition based on JDK and JRE. It is used to develop and deploy Java applications on the desktop, server, and embedded devices and real-time environments.
Java SE, Java SE Embedded and JRockit components of Oracle Java SE have security vulnerabilities in implementation, after successful exploitation, unauthenticated attackers can exploit this vulnerability to affect the availability, confidentiality, and integrity of affected applications.
<* Source: Oracle
Link: http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html
*>
Suggestion:
Vendor patch:
Oracle
------
Oracle has released a Security Bulletin (cpujan2018-3236628) and patches for this:
Cpujan2018-3236628: Oracle Critical Patch Update Advisory-January 2018
Link: http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html