Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!Close

CVE-2016-3425

Published: 21 April 2016

Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect availability via vectors related to JAXP.

From the Ubuntu Security Team

A vulnerability was discovered in the OpenJDK JRE related to availability. An attacker could exploit this to cause a denial of service.

Priority

Low

CVSS 3 base score: 4.3

Status

Package Release Status
openjdk-7
Launchpad, Ubuntu, Debian
upstream Needs triage

precise
Released (7u101-2.6.6-0ubuntu0.12.04.1)
trusty Does not exist
(trusty was released [7u101-2.6.6-0ubuntu0.14.04.1])
wily
Released (7u101-2.6.6-0ubuntu0.15.10.1)
xenial Does not exist

openjdk-6
Launchpad, Ubuntu, Debian
upstream Needs triage

precise
Released (6b39-1.13.11-0ubuntu0.12.04.1)
trusty Does not exist
(trusty was released [6b39-1.13.11-0ubuntu0.14.04.1])
wily
Released (6b39-1.13.11-0ubuntu0.15.10.2)
xenial Does not exist

openjdk-8
Launchpad, Ubuntu, Debian
upstream Needs triage

precise Does not exist

trusty Does not exist

wily
Released (8u91-b14-0ubuntu4~15.10.1)
xenial
Released (8u91-b14-0ubuntu4~16.04.1)