Show plain JSON{"id": "CVE-2014-3068", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 6.4, "accessVector": "NETWORK", "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:N", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "LOW", "availabilityImpact": "NONE", "confidentialityImpact": "PARTIAL"}, "acInsufInfo": false, "impactScore": 4.9, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 10.0, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false}]}, "published": "2014-12-02T01:59:02.577", "references": [{"url": "http://rhn.redhat.com/errata/RHSA-2015-0264.html", "source": "psirt@us.ibm.com"}, {"url": "http://www-01.ibm.com/support/docview.wss?uid=swg1IV66876", "tags": ["Vendor Advisory"], "source": "psirt@us.ibm.com"}, {"url": "http://www-01.ibm.com/support/docview.wss?uid=swg1IV66894", "tags": ["Vendor Advisory"], "source": "psirt@us.ibm.com"}, {"url": "http://www-01.ibm.com/support/docview.wss?uid=swg21691089", "tags": ["Vendor Advisory"], "source": "psirt@us.ibm.com"}, {"url": "https://bugzilla.redhat.com/show_bug.cgi?id=1164201", "source": "psirt@us.ibm.com"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/93756", "source": "psirt@us.ibm.com"}, {"url": "http://rhn.redhat.com/errata/RHSA-2015-0264.html", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www-01.ibm.com/support/docview.wss?uid=swg1IV66876", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www-01.ibm.com/support/docview.wss?uid=swg1IV66894", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www-01.ibm.com/support/docview.wss?uid=swg21691089", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://bugzilla.redhat.com/show_bug.cgi?id=1164201", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/93756", "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Deferred", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-255"}]}], "descriptions": [{"lang": "en", "value": "IBM Java Runtime Environment (JRE) 7 R1 before SR1 FP1 (7.1.1.1), 7 before SR7 FP1 (7.0.7.1), 6 R1 before SR8 FP1 (6.1.8.1), 6 before SR16 FP1 (6.0.16.1), and before 5.0 SR16 FP7 (5.0.16.7) allows attackers to obtain the private key from a Certificate Management System (CMS) keystore via a brute force attack."}, {"lang": "es", "value": "IBM Java Runtime Environment (JRE) 7 R1 anterior a SR1 FP1 (7.1.1.1), 7 anterior a SR7 FP1 (7.0.7.1), 6 R1 anterior a SR8 FP1 (6.1.8.1), 6 anterior a SR16 FP1 (6.0.16.1), y anterior a 5.0 SR16 FP7 (5.0.16.7) permite a atacantes obtener la clave privada de un almac\u00e9n de claves del sistema de gesti\u00f3n de certificados 'Certificate Management System (CMS)' a trav\u00e9s de un ataque de fuerza bruta."}], "lastModified": "2025-04-12T10:46:40.837", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:ibm:java:5.0.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "03D3F84F-3F6E-4DF1-B162-152293D951EA"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.11.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A18121C3-F3F1-4EC7-A64E-3F6A0C9788C8"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.11.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BAD59912-7325-4AE1-ACCF-D4F804AF3947"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.11.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "62783157-E3B6-4A23-8D2F-1FBD0762E9A0"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.12.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "14CC0D53-8AB8-4D44-82BB-0E6A974C36AB"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.12.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "91A3129F-17A6-4F32-BD5D-34E4A1D1A840"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.12.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E2845FF4-2620-4B8D-96CF-CC26B3DEA3C4"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.12.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CC7CD279-54B6-4F6B-AE14-299FB319C690"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.12.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0EA269CA-4676-4008-89EF-20FAB89886A1"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.12.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D22105B6-1378-4E1C-B28A-FCAE00A2D5CF"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.13.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "601762D3-1188-4945-931D-EB8DAC2847A1"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.14.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FA4A30A6-498C-46B8-8EFC-45EB13354EAF"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.15.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "414CC00A-C797-4C34-8709-75DC061DCDE1"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.16.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4401B967-0550-44F1-8753-9632120D2A44"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.16.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4961693D-F56C-46CD-B721-6A15E2837C17"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.16.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AA4FBB66-CF6A-42D2-B122-1861F4139E75"}, {"criteria": "cpe:2.3:a:ibm:java:5.0.16.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0E4B1DD6-3056-4FA8-8203-CCD8036FBD4C"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "14AD4A87-382A-41F0-96D8-0F0A9B738773"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "33701DDF-6882-41D3-A11B-A1F4585A77A7"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "25C58BBA-06AC-40CD-A906-FD1B3B0AAB69"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "76C5B430-EE11-4674-B4B0-895D66E3B32F"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B1837D84-6B4F-40D8-9A3F-71C328F659BA"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D20A369B-2168-4883-A84C-BB48A71AFB33"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3628AAB4-E524-46E5-AAF4-1980256F13CE"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.7.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "30DC9FE3-CDE9-4F83-989B-4E431BA18B56"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.8.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C17B1C6B-04CE-49FB-B9BD-98ECD626B26F"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.8.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "81F529EB-2BCA-4E3E-93E4-2A9880CDA367"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.9.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8DEAC3D6-F9F8-4F82-9BF1-FF0EC07A3274"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.9.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7694638C-CDAC-44DF-B9F9-F7237CD98017"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.9.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "23903A3C-1760-4836-BAE6-BDD32CBB4CBD"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.10.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2477E033-D26B-4D71-839B-5FE4B0927559"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.10.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B1CAB7BF-265E-411D-A584-E78DE171F065"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.11.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4E45F670-232F-4CE5-8926-6463E5619506"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.12.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5B70E6E3-15B3-4D48-AE49-B9184A58EECE"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.13.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D5BCE3FD-B89B-4141-8103-9DB941AD60D0"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.13.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8EADFB3B-738F-4919-B165-9ECEED46EA6C"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.13.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B23A5431-E599-4848-AB83-B299898F5EF0"}, {"criteria": "cpe:2.3:a:ibm:java:6.0.14.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5FAE5E9B-3CF5-40E5-A551-1AFD6BD07A2C"}, {"criteria": "cpe:2.3:a:ibm:java:7.0.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9A8BF650-B8F5-467E-8DBF-81788B55F345"}, {"criteria": "cpe:2.3:a:ibm:java:7.0.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1752A831-916F-4A7D-8AAE-1CEFACC51F91"}, {"criteria": "cpe:2.3:a:ibm:java:7.0.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0C9744C4-76BE-428B-AFF2-5BCE00A58322"}, {"criteria": "cpe:2.3:a:ibm:java:7.0.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "48B1DE45-90F9-416B-9087-8AEF5B0A3C46"}, {"criteria": "cpe:2.3:a:ibm:java:7.0.4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9EF6A045-0DF6-463B-A0DB-6C31D8C2984C"}, {"criteria": "cpe:2.3:a:ibm:java:7.0.4.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A731493C-9B46-4105-9902-B15BA0E0FB11"}, {"criteria": "cpe:2.3:a:ibm:java:7.0.4.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "49454369-A494-4EAA-88D5-181570DEBB4A"}, {"criteria": "cpe:2.3:a:ibm:java:7.0.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C76B9DFD-7259-423A-8CFC-A898E74897AE"}], "operator": "OR"}]}], "sourceIdentifier": "psirt@us.ibm.com"}