[SE-2014-02] Errata document for Issue 42 (CVE-2015-4871 affecting Java SE 7)

Posted by Security Explorations on Nov 30

Hello All,

On Jun 30, 2015 Security Explorations reported a security vulnerability
(Issue 42 assigned CVE-2015-4871) to Oracle affecting Java SE 7 [1].

In our original report [2], we indicated that the vulnerability had its
origin in klassItable::initialize_itable_for_interface method’s
implementation of Java SE 7 HotSpot VM. We have recently learned that
our initial analysis regarding the root cause of Issue 42 was incorrect.

As a…

Leave a Reply