JDK: unspecified vulnerability fixed in 6u39 and 7u13 (Deployment)
Published Feb 2, 2013
7.6
HIGHCVSS 2.0
EPSS 6.71%
Description
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11 and 6 through Update 38 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than other CVEs listed in the February 2013 CPU.
Affected products
No data.
Configuration 1
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
Configuration 2
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
Configuration 3
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
Configuration 4
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
- 1.6.0
No data.
Red Hat Network Satellite Server v 5.4
java-1.6.0-ibm-1:1.6.0.14.0-1jpp.1.el5_9
Fixed · RHSA-2013:1455
Red Hat Network Satellite Server v 5.5
java-1.6.0-ibm-1:1.6.0.14.0-1jpp.1.el5_9
Fixed · RHSA-2013:1456
Supplementary for Red Hat Enterprise Linux 5
java-1.6.0-ibm-1:1.6.0.13.0-1jpp.2.el5_9
Fixed · RHSA-2013:0625
Supplementary for Red Hat Enterprise Linux 5
java-1.6.0-sun-1:1.6.0.39-1jpp.4.el5_9
Fixed · RHSA-2013:0236
Supplementary for Red Hat Enterprise Linux 5
java-1.7.0-ibm-1:1.7.0.4.0-1jpp.2.el5_9
Fixed · RHSA-2013:0626
Supplementary for Red Hat Enterprise Linux 5
java-1.7.0-oracle-1:1.7.0.13-1jpp.1.el5_9
Fixed · RHSA-2013:0237
Supplementary for Red Hat Enterprise Linux 6
java-1.6.0-ibm-1:1.6.0.13.0-1jpp.3.el6_4
Fixed · RHSA-2013:0625
Supplementary for Red Hat Enterprise Linux 6
java-1.6.0-sun-1:1.6.0.39-1jpp.1.el6_3
Fixed · RHSA-2013:0236
Supplementary for Red Hat Enterprise Linux 6
java-1.7.0-ibm-1:1.7.0.4.0-1jpp.2.el6_4
Fixed · RHSA-2013:0626
Supplementary for Red Hat Enterprise Linux 6
java-1.7.0-oracle-1:1.7.0.13-1jpp.3.el6_3
Fixed · RHSA-2013:0237
Red Hat Enterprise Linux 5
java-1.4.2-ibm
Will not fix
Red Hat Enterprise Linux 5
java-1.5.0-ibm
Not affected
Red Hat Enterprise Linux 6
java-1.5.0-ibm
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Network Satellite Server v 5.4 | java-1.6.0-ibm-1:1.6.0.14.0-1jpp.1.el5_9 | Fixed | RHSA-2013:1455 |
| Red Hat Network Satellite Server v 5.5 | java-1.6.0-ibm-1:1.6.0.14.0-1jpp.1.el5_9 | Fixed | RHSA-2013:1456 |
| Supplementary for Red Hat Enterprise Linux 5 | java-1.6.0-ibm-1:1.6.0.13.0-1jpp.2.el5_9 | Fixed | RHSA-2013:0625 |
| Supplementary for Red Hat Enterprise Linux 5 | java-1.6.0-sun-1:1.6.0.39-1jpp.4.el5_9 | Fixed | RHSA-2013:0236 |
| Supplementary for Red Hat Enterprise Linux 5 | java-1.7.0-ibm-1:1.7.0.4.0-1jpp.2.el5_9 | Fixed | RHSA-2013:0626 |
| Supplementary for Red Hat Enterprise Linux 5 | java-1.7.0-oracle-1:1.7.0.13-1jpp.1.el5_9 | Fixed | RHSA-2013:0237 |
| Supplementary for Red Hat Enterprise Linux 6 | java-1.6.0-ibm-1:1.6.0.13.0-1jpp.3.el6_4 | Fixed | RHSA-2013:0625 |
| Supplementary for Red Hat Enterprise Linux 6 | java-1.6.0-sun-1:1.6.0.39-1jpp.1.el6_3 | Fixed | RHSA-2013:0236 |
| Supplementary for Red Hat Enterprise Linux 6 | java-1.7.0-ibm-1:1.7.0.4.0-1jpp.2.el6_4 | Fixed | RHSA-2013:0626 |
| Supplementary for Red Hat Enterprise Linux 6 | java-1.7.0-oracle-1:1.7.0.13-1jpp.3.el6_3 | Fixed | RHSA-2013:0237 |
| Red Hat Enterprise Linux 5 | java-1.4.2-ibm | Will not fix | n/a |
| Red Hat Enterprise Linux 5 | java-1.5.0-ibm | Not affected | n/a |
| Red Hat Enterprise Linux 6 | java-1.5.0-ibm | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
No CWE recorded.
References (19)
- http://marc.info/?l=bugtraq&m=136439120408139&w=2 vendor-advisoryx_refsource_HP
- http://marc.info/?l=bugtraq&m=136570436423916&w=2 vendor-advisoryx_refsource_HP
- http://marc.info/?l=bugtraq&m=136733161405818&w=2 vendor-advisoryx_refsource_HP
- http://rhn.redhat.com/errata/RHSA-2013-0236.html vendor-advisoryx_refsource_REDHAT
- http://rhn.redhat.com/errata/RHSA-2013-0237.html vendor-advisoryx_refsource_REDHAT
- http://rhn.redhat.com/errata/RHSA-2013-1455.html vendor-advisoryx_refsource_REDHAT
- http://rhn.redhat.com/errata/RHSA-2013-1456.html vendor-advisoryx_refsource_REDHAT
- http://www.kb.cert.org/vuls/id/858729 third-party-advisoryx_refsource_CERT-VNUS Government Resource
- http://www.oracle.com/technetwork/topics/security/javacpufeb2013-1841061.html x_refsource_CONFIRMVendor Advisory
- http://www.securityfocus.com/bid/57716 vdb-entryx_refsource_BID
- http://www.us-cert.gov/cas/techalerts/TA13-032A.html third-party-advisoryx_refsource_CERTUS Government Resource
- https://access.redhat.com/security/cve/CVE-2013-0423 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=906921 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2013-0434 Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2013-0423
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16476 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18869 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19425 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2013-0423
Change history (0)
No recorded changes yet.