The com.ibm.rmi.io.SunSerializableFactory class in IBM SDK, Java Technology Edition 6 before SR16 FP25 (6.0.16.25), 6 R1 before SR8 FP25 (6.1.8.25), 7 before SR9 FP40 (7.0.9.40), 7 R1 before SR3 FP40 (7.1.3.40), and 8 before SR3 (8.0.3.0) does not properly deserialize classes in an AccessController doPrivileged block, which allows remote attackers to bypass a sandbox protection mechanism and execute arbitrary code as demonstrated by the readValue method of the com.ibm.rmi.io.ValueHandlerPool.ValueHandlerSingleton class, which implements the javax.rmi.CORBA.ValueHandler interface. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-5456.

Project Subscriptions

Vendors Products
Java Sdk Subscribe
Suse Linux Enterprise Module For Legacy Software Subscribe
Suse Linux Enterprise Server Subscribe
Suse Linux Enterprise Software Development Kit Subscribe
Suse Manager Subscribe
Suse Manager Proxy Subscribe
Suse Openstack Cloud Subscribe
Enterprise Linux Desktop Subscribe
Enterprise Linux Hpc Node Supplementary Subscribe
Enterprise Linux Server Subscribe
Enterprise Linux Server Eus Subscribe
Enterprise Linux Workstation Subscribe
Network Satellite Subscribe
Rhel Extras Subscribe
Satellite Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2016-0411 The com.ibm.rmi.io.SunSerializableFactory class in IBM SDK, Java Technology Edition 6 before SR16 FP25 (6.0.16.25), 6 R1 before SR8 FP25 (6.1.8.25), 7 before SR9 FP40 (7.0.9.40), 7 R1 before SR3 FP40 (7.1.3.40), and 8 before SR3 (8.0.3.0) does not properly deserialize classes in an AccessController doPrivileged block, which allows remote attackers to bypass a sandbox protection mechanism and execute arbitrary code as demonstrated by the readValue method of the com.ibm.rmi.io.ValueHandlerPool.ValueHandlerSingleton class, which implements the javax.rmi.CORBA.ValueHandler interface. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-5456.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

References
Link Providers
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00039.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00040.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00042.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00058.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00059.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00061.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00067.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00002.html cve-icon cve-icon
http://rhn.redhat.com/errata/RHSA-2016-0701.html cve-icon cve-icon
http://rhn.redhat.com/errata/RHSA-2016-0702.html cve-icon cve-icon
http://rhn.redhat.com/errata/RHSA-2016-0708.html cve-icon cve-icon
http://rhn.redhat.com/errata/RHSA-2016-0716.html cve-icon cve-icon
http://rhn.redhat.com/errata/RHSA-2016-1039.html cve-icon cve-icon
http://seclists.org/fulldisclosure/2016/Apr/43 cve-icon cve-icon
http://www-01.ibm.com/support/docview.wss?uid=swg1IX90171 cve-icon cve-icon
http://www-01.ibm.com/support/docview.wss?uid=swg21980826 cve-icon cve-icon
http://www.ibm.com/developerworks/java/jdk/alerts/#IBM_Security_Update_April_2016 cve-icon
http://www.security-explorations.com/materials/SE-2012-01-IBM-5.pdf cve-icon cve-icon
http://www.securityfocus.com/archive/1/538066/100/100/threaded cve-icon cve-icon
http://www.securityfocus.com/bid/89192 cve-icon cve-icon
http://www.securitytracker.com/id/1035953 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2016:1430 cve-icon cve-icon
https://access.redhat.com/errata/RHSA-2017:1216 cve-icon cve-icon
https://nvd.nist.gov/vuln/detail/CVE-2016-0376 cve-icon
https://www.cve.org/CVERecord?id=CVE-2016-0376 cve-icon
History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2024-08-05T22:15:24.181Z

Reserved: 2015-12-08T00:00:00.000Z

Link: CVE-2016-0376

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2016-06-03T14:59:02.890

Modified: 2025-04-12T10:46:40.837

Link: CVE-2016-0376

cve-icon Redhat

Severity : Critical

Publid Date: 2016-04-14T00:00:00Z

Links: CVE-2016-0376 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses