RULE(RULE ID:312999)

Rule General Information
Release Date: 2016-10-12
Rule Name: WEB-CLIENT Oracle Java Phantomreference Use after Free Vulnerability -1 (CVE-2015-0395)
Severity:
CVE ID:
Rule Protection Details
Description: Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.
Impact: A use-after-free vulnerability can be exploited by an attacker in the vulnerable product. Successful exploit may cause some adverse consequences, such as crash of the product, execution of arbitrary code.
Affected OS: Solaris, FreeBSD, Windows, Linux, Other Unix, Mac OS
Reference: SecurityFocusBID:72142
SecurityTrackerID:1031580
Solutions
More advisories have been published on the website, please visit for more suggestions:
http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html#AppendixJAVA