Description
The com.ibm.rmi.io.SunSerializableFactory class in IBM SDK, Java Technology Edition 6 before SR16 FP25 (6.0.16.25), 6 R1 before SR8 FP25 (6.1.8.25), 7 before SR9 FP40 (7.0.9.40), 7 R1 before SR3 FP40 (7.1.3.40), and 8 before SR3 (8.0.3.0) does not properly deserialize classes in an AccessController doPrivileged block, which allows remote attackers to bypass a sandbox protection mechanism and execute arbitrary code as demonstrated by the readValue method of the com.ibm.rmi.io.ValueHandlerPool.ValueHandlerSingleton class, which implements the javax.rmi.CORBA.ValueHandler interface. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-5456.
Published: 2016-06-03
Score: 8.1 High
EPSS: 1.9% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2016-0411 The com.ibm.rmi.io.SunSerializableFactory class in IBM SDK, Java Technology Edition 6 before SR16 FP25 (6.0.16.25), 6 R1 before SR8 FP25 (6.1.8.25), 7 before SR9 FP40 (7.0.9.40), 7 R1 before SR3 FP40 (7.1.3.40), and 8 before SR3 (8.0.3.0) does not properly deserialize classes in an AccessController doPrivileged block, which allows remote attackers to bypass a sandbox protection mechanism and execute arbitrary code as demonstrated by the readValue method of the com.ibm.rmi.io.ValueHandlerPool.ValueHandlerSingleton class, which implements the javax.rmi.CORBA.ValueHandler interface. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-5456.
References
Link Providers
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00039.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00040.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00042.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00058.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00059.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00061.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00067.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00002.html cve-icon cve-icon
http://rhn.redhat.com/errata/RHSA-2016-0701.html cve-icon cve-icon
http://rhn.redhat.com/errata/RHSA-2016-0702.html cve-icon cve-icon
http://rhn.redhat.com/errata/RHSA-2016-0708.html cve-icon cve-icon
http://rhn.redhat.com/errata/RHSA-2016-0716.html cve-icon cve-icon
http://rhn.redhat.com/errata/RHSA-2016-1039.html cve-icon cve-icon
http://seclists.org/fulldisclosure/2016/Apr/43 cve-icon cve-icon
http://www-01.ibm.com/support/docview.wss?uid=swg1IX90171 cve-icon cve-icon
http://www-01.ibm.com/support/docview.wss?uid=swg21980826 cve-icon cve-icon
http://www.ibm.com/developerworks/java/jdk/alerts/#IBM_Security_Update_April_2016 cve-icon
http://www.security-explorations.com/materials/SE-2012-01-IBM-5.pdf cve-icon cve-icon
http://www.securityfocus.com/archive/1/538066/100/100/threaded cve-icon cve-icon
http://www.securityfocus.com/bid/89192 cve-icon cve-icon
http://www.securitytracker.com/id/1035953 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2016:1430 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2017:1216 cve-icon cve-icon
https://nvd.nist.gov/vuln/detail/CVE-2016-0376 cve-icon
https://www.cve.org/CVERecord?id=CVE-2016-0376 cve-icon
History

No history.

Subscriptions

Ibm Java Sdk
Novell Suse Linux Enterprise Module For Legacy Software Suse Linux Enterprise Server Suse Linux Enterprise Software Development Kit Suse Manager Suse Manager Proxy Suse Openstack Cloud
Redhat Enterprise Linux Desktop Enterprise Linux Hpc Node Supplementary Enterprise Linux Server Enterprise Linux Server Eus Enterprise Linux Workstation Network Satellite Rhel Extras Satellite
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2024-08-05T22:15:24.181Z

Reserved: 2015-12-08T00:00:00.000Z

Link: CVE-2016-0376

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2016-06-03T14:59:02.890

Modified: 2025-04-12T10:46:40.837

Link: CVE-2016-0376

cve-icon Redhat

Severity : Critical

Publid Date: 2016-04-14T00:00:00Z

Links: CVE-2016-0376 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses