Check Point Reference: | CPAI-2014-1697 |
Date Published: | 16 Sep 2014 |
Severity: | High |
Last Updated: | Monday 11 August, 2014 |
Source: | Oracle |
Industry Reference: | CVE-2014-0456 |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | Oracle Java SE 6u71 and prior Oracle Java SE 7u51 and prior Oracle Java SE 8 Oracle Java SE Embedded 7u51 and prior |
Vulnerability Description | A code execution vulnerability has been reported in Oracle Java. The vulnerability is due to a race condition in System.arraycopy(). A remote, unauthenticated attacker can exploit this vulnerability by enticing a user to visit a webpage containing a maliciously crafted Java applet. |
SmartView Tracker will log the following entries:
Attack Name: Oracle Protection Violation.
Attack Information: Oracle Java System.arraycopy Race Condition