CVE-2016-3485: Oracle JDK

Low severity, CVSS 2.9. EPSS: 0.5% chance of exploitation in the next 30 days.

Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows local users to affect integrity via vectors related to Networking.

Affected products

  • Oracle JDK: version 1.6.0 only; version 1.7.0 only; version 1.8.0 only
  • Oracle JRE: version 1.6.0 only; version 1.7.0 only; version 1.8.0 only
  • Oracle JRockit: version r28.3.10 only

Published 2016-07-21. Last modified 2026-06-17.