Vulnerability Manager Plus
Free Trial
  • Overview
  • Features
  • Demo
  • Documents
  • Get Quote
  • Support
Home
 

libxstream-java security update(DSA-3575-1) libxstream-java_1.4.7-2+deb8u1_all.deb

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Base Score
5.0
MODERATE
Vector
I:N/AV:N/Au:N/AC:L/A:N/C:P
EPSS Score
Exploitation Probability
2.859%

CVE Information

Source CVE
CVE-2016-3674

Associated CVE
CVE-2016-3674

Patch Details

No records found

References

http://lists.fedoraproject.org/pipermail/package-announce/2016-April/183180.html
http://lists.fedoraproject.org/pipermail/package-announce/2016-April/183208.html
http://rhn.redhat.com/errata/RHSA-2016-2822.html
http://rhn.redhat.com/errata/RHSA-2016-2823.html
http://www.debian.org/security/2016/dsa-3575
http://www.openwall.com/lists/oss-security/2016/03/25/8
http://www.openwall.com/lists/oss-security/2016/03/28/1
http://www.securityfocus.com/bid/85381
http://www.securitytracker.com/id/1036419
http://x-stream.github.io/changes.html#1.4.9
https://github.com/x-stream/xstream/issues/25

Details

CWE ID
CWE-200
CWE Type
XML external entity (XXE) injection
Vulnerability ID
37551
Published
2016-05-17
Updated
2026-02-27

Vulnerability Intelligence

Evaluate vulnerabilities across managed endpoints with enriched threat intelligence and risk context such as:

Risk Score
Emerging Risk Catalog
CERT Advisories
Risk Indicators