CVE-2015-4902
oracle jdk, oracle jre, redhat satellite
Published 22 Oct 2015 · updated 17 Jun 2026 · Analyzed
5.3 Medium · CVSS 3.1, CISA ADP
Exploited in the wild
CISA added this to its Known Exploited Vulnerabilities catalog on 3 Mar 2022, with a remediation deadline of 24 Mar 2022 for US federal agencies.
Required action: Apply updates per vendor instructions.
Description
Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60 allows remote attackers to affect integrity via unknown vectors related to Deployment.
References
- lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.html · Third Party Advisory
- lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html · Third Party Advisory
- lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html · Third Party Advisory
- lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html · Third Party Advisory
- lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html · Third Party Advisory
- lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html · Third Party Advisory
- lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.html · Third Party Advisory
- lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html · Third Party Advisory
- lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.html · Third Party Advisory
- rhn.redhat.com/errata/RHSA-2015-1926.html · Third Party Advisory
- rhn.redhat.com/errata/RHSA-2015-1927.html · Third Party Advisory
- rhn.redhat.com/errata/RHSA-2015-1928.html · Third Party Advisory
- rhn.redhat.com/errata/RHSA-2015-2506.html · Third Party Advisory
- rhn.redhat.com/errata/RHSA-2015-2507.html · Third Party Advisory
- rhn.redhat.com/errata/RHSA-2015-2508.html · Third Party Advisory
- rhn.redhat.com/errata/RHSA-2015-2509.html · Third Party Advisory
- rhn.redhat.com/errata/RHSA-2015-2518.html · Third Party Advisory
- www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html · Patch, Vendor Advisory
- www.securityfocus.com/bid/77241 · Broken Link, Third Party Advisory, VDB Entry
- www.securitytracker.com/id/1033884 · Broken Link, Third Party Advisory, VDB Entry
- access.redhat.com/errata/RHSA-2016:1430 · Third Party Advisory
- security.gentoo.org/glsa/201603-11 · Third Party Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2015-4902 · US Government Resource