The color management(CMM) functionality in Oracle Java is prune to a memory corruption vulnerability which allows to run Java code outside the sandbox.
CVE Link
Exploit Platform
Exploit Type
Product Name