JDK: multiple unspecified JavaFX vulnerabilities fixed in 7u21 (JavaFX)
Published Apr 17, 2013
10.0
HIGHCVSS 2.0
EPSS 4.71%
Description
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier and JavaFX 2.2.7 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to JavaFX, a different vulnerability than CVE-2013-0402, CVE-2013-2427, and CVE-2013-2428.
Affected products
No data.
Configuration 1
- ≤ 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
Configuration 2
- ≤ 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
Configuration 3
No data.
Supplementary for Red Hat Enterprise Linux 5
java-1.7.0-oracle-1:1.7.0.21-1jpp.1.el5
Fixed · RHSA-2013:0757
Supplementary for Red Hat Enterprise Linux 6
java-1.7.0-oracle-1:1.7.0.21-1jpp.1.el6
Fixed · RHSA-2013:0757
| Product | Package | State | Advisory |
|---|---|---|---|
| Supplementary for Red Hat Enterprise Linux 5 | java-1.7.0-oracle-1:1.7.0.21-1jpp.1.el5 | Fixed | RHSA-2013:0757 |
| Supplementary for Red Hat Enterprise Linux 6 | java-1.7.0-oracle-1:1.7.0.21-1jpp.1.el6 | Fixed | RHSA-2013:0757 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
No CWE recorded.
References (9)
- http://rhn.redhat.com/errata/RHSA-2013-0757.html vendor-advisoryx_refsource_REDHAT
- http://www.oracle.com/technetwork/topics/security/javacpuapr2013-1928497.html x_refsource_CONFIRMVendor Advisory
- http://www.us-cert.gov/ncas/alerts/TA13-107A third-party-advisoryx_refsource_CERTUS Government Resource
- https://access.redhat.com/security/cve/CVE-2013-2414 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=953135 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2013-2360 Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2013-2414
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16667 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2013-2414
| Link | Providers | Tags |
|---|---|---|
| http://rhn.redhat.com/errata/RHSA-2013-0757.html | vendor-advisoryx_refsource_REDHAT | |
| http://www.oracle.com/technetwork/topics/security/javacpuapr2013-1928497.html | x_refsource_CONFIRMVendor Advisory | |
| http://www.us-cert.gov/ncas/alerts/TA13-107A | third-party-advisoryx_refsource_CERTUS Government Resource | |
| https://access.redhat.com/security/cve/CVE-2013-2414 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=953135 | Issue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2013-2360 | Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2013-2414 | ||
| https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16667 | vdb-entrysignaturex_refsource_OVAL | |
| https://www.cve.org/CVERecord?id=CVE-2013-2414 |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
No data
GitHub
No data