Búsqueda de    
Vulnerabilidad   
    Buscar 219043 Descripciones CVE y
99761 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.1.2.2018.1128
Categoría:Huawei EulerOS Local Security Checks
Título:Huawei EulerOS: Security Advisory for java-1.7.0-openjdk (EulerOS-SA-2018-1128)
Resumen:The remote host is missing an update for the Huawei EulerOS 'java-1.7.0-openjdk' package(s) announced via the EulerOS-SA-2018-1128 advisory.
Descripción:Summary:
The remote host is missing an update for the Huawei EulerOS 'java-1.7.0-openjdk' package(s) announced via the EulerOS-SA-2018-1128 advisory.

Vulnerability Insight:
OpenJDK: incorrect handling of Reference clones can lead to sandbox bypass.(CVE-2018-2814)

OpenJDK: unrestricted deserialization of data from JCEKS key stores.(CVE-2018-2794)

OpenJDK: insufficient consistency checks in deserialization of multiple classes.(CVE-2018-2795)

OpenJDK: unbounded memory allocation during deserialization in PriorityBlockingQueue.(CVE-2018-2796)

OpenJDK: unbounded memory allocation during deserialization in TabularDataSupport. (CVE-2018-2797)

OpenJDK: unbounded memory allocation during deserialization in Container.(CVE-2018-2798)

OpenJDK: unbounded memory allocation during deserialization in NamedNodeMapImpl.(CVE-2018-2799)

OpenJDK: RMI HTTP transport enabled by default.(CVE-2018-2800)

OpenJDK: unbounded memory allocation during deserialization in StubIORImpl.(CVE-2018-2815)

OpenJDK: incorrect merging of sections in the JAR manifest.(CVE-2018-2790)

Affected Software/OS:
'java-1.7.0-openjdk' package(s) on Huawei EulerOS V2.0SP1.

Solution:
Please install the updated package(s).

CVSS Score:
5.1

CVSS Vector:
AV:N/AC:H/Au:N/C:P/I:P/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2018-2790
BugTraq ID: 103877
http://www.securityfocus.com/bid/103877
Debian Security Information: DSA-4185 (Google Search)
https://www.debian.org/security/2018/dsa-4185
Debian Security Information: DSA-4225 (Google Search)
https://www.debian.org/security/2018/dsa-4225
https://security.gentoo.org/glsa/201903-14
RedHat Security Advisories: RHSA-2018:1188
https://access.redhat.com/errata/RHSA-2018:1188
RedHat Security Advisories: RHSA-2018:1191
https://access.redhat.com/errata/RHSA-2018:1191
RedHat Security Advisories: RHSA-2018:1201
https://access.redhat.com/errata/RHSA-2018:1201
RedHat Security Advisories: RHSA-2018:1202
https://access.redhat.com/errata/RHSA-2018:1202
RedHat Security Advisories: RHSA-2018:1203
https://access.redhat.com/errata/RHSA-2018:1203
RedHat Security Advisories: RHSA-2018:1204
https://access.redhat.com/errata/RHSA-2018:1204
RedHat Security Advisories: RHSA-2018:1205
https://access.redhat.com/errata/RHSA-2018:1205
RedHat Security Advisories: RHSA-2018:1206
https://access.redhat.com/errata/RHSA-2018:1206
RedHat Security Advisories: RHSA-2018:1270
https://access.redhat.com/errata/RHSA-2018:1270
RedHat Security Advisories: RHSA-2018:1278
https://access.redhat.com/errata/RHSA-2018:1278
RedHat Security Advisories: RHSA-2018:1721
https://access.redhat.com/errata/RHSA-2018:1721
RedHat Security Advisories: RHSA-2018:1722
https://access.redhat.com/errata/RHSA-2018:1722
RedHat Security Advisories: RHSA-2018:1723
https://access.redhat.com/errata/RHSA-2018:1723
RedHat Security Advisories: RHSA-2018:1724
https://access.redhat.com/errata/RHSA-2018:1724
RedHat Security Advisories: RHSA-2018:1974
https://access.redhat.com/errata/RHSA-2018:1974
RedHat Security Advisories: RHSA-2018:1975
https://access.redhat.com/errata/RHSA-2018:1975
http://www.securitytracker.com/id/1040697
https://usn.ubuntu.com/3644-1/
https://usn.ubuntu.com/3691-1/
Common Vulnerability Exposure (CVE) ID: CVE-2018-2794
BugTraq ID: 103817
http://www.securityfocus.com/bid/103817
Common Vulnerability Exposure (CVE) ID: CVE-2018-2795
BugTraq ID: 103847
http://www.securityfocus.com/bid/103847
Common Vulnerability Exposure (CVE) ID: CVE-2018-2796
BugTraq ID: 103868
http://www.securityfocus.com/bid/103868
Common Vulnerability Exposure (CVE) ID: CVE-2018-2797
BugTraq ID: 103846
http://www.securityfocus.com/bid/103846
Common Vulnerability Exposure (CVE) ID: CVE-2018-2798
BugTraq ID: 103841
http://www.securityfocus.com/bid/103841
Common Vulnerability Exposure (CVE) ID: CVE-2018-2799
BugTraq ID: 103872
http://www.securityfocus.com/bid/103872
https://lists.apache.org/thread.html/49dc6702104a86ecbb40292dcd329ce9ae4c32b74733199ecab14a73@%3Cj-users.xerces.apache.org%3E
https://lists.apache.org/thread.html/r449b5d89c7b2ba3762584cf6c38e01867d4b24706e023cf2a9911307@%3Cuser.spark.apache.org%3E
https://lists.apache.org/thread.html/b53d4601ecd9ec63c799dbe1bc5b78e0d52f4cef429da2dfe63cf06d@%3Cfop-dev.xmlgraphics.apache.org%3E
Common Vulnerability Exposure (CVE) ID: CVE-2018-2800
BugTraq ID: 103849
http://www.securityfocus.com/bid/103849
Common Vulnerability Exposure (CVE) ID: CVE-2018-2814
BugTraq ID: 103798
http://www.securityfocus.com/bid/103798
Common Vulnerability Exposure (CVE) ID: CVE-2018-2815
BugTraq ID: 103848
http://www.securityfocus.com/bid/103848
CopyrightCopyright (C) 2020 Greenbone Networks GmbH

Esta es sólo una de 99761 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2024 E-Soft Inc. Todos los derechos reservados.