JDK: unspecified vulnerability fixed in 7u25 (Deployment)
Published Jun 18, 2013
9.3
HIGHCVSS 2.0
EPSS 5.21%
Description
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.
Affected products
No data.
Configuration 1
- ≤ 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
Configuration 2
- ≤ 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
- 1.7.0
No data.
Supplementary for Red Hat Enterprise Linux 5
java-1.7.0-ibm-1:1.7.0.5.0-1jpp.2.el5_9
Fixed · RHSA-2013:1060
Supplementary for Red Hat Enterprise Linux 5
java-1.7.0-oracle-1:1.7.0.25-1jpp.1.el5_9
Fixed · RHSA-2013:0963
Supplementary for Red Hat Enterprise Linux 6
java-1.7.0-ibm-1:1.7.0.5.0-1jpp.2.el6_4
Fixed · RHSA-2013:1060
Supplementary for Red Hat Enterprise Linux 6
java-1.7.0-oracle-1:1.7.0.25-1jpp.1.el6_4
Fixed · RHSA-2013:0963
Red Hat Enterprise Linux 5
java-1.5.0-ibm
Not affected
Red Hat Enterprise Linux 5
java-1.6.0-ibm
Not affected
Red Hat Enterprise Linux 6
java-1.5.0-ibm
Not affected
Red Hat Enterprise Linux 6
java-1.6.0-ibm
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Supplementary for Red Hat Enterprise Linux 5 | java-1.7.0-ibm-1:1.7.0.5.0-1jpp.2.el5_9 | Fixed | RHSA-2013:1060 |
| Supplementary for Red Hat Enterprise Linux 5 | java-1.7.0-oracle-1:1.7.0.25-1jpp.1.el5_9 | Fixed | RHSA-2013:0963 |
| Supplementary for Red Hat Enterprise Linux 6 | java-1.7.0-ibm-1:1.7.0.5.0-1jpp.2.el6_4 | Fixed | RHSA-2013:1060 |
| Supplementary for Red Hat Enterprise Linux 6 | java-1.7.0-oracle-1:1.7.0.25-1jpp.1.el6_4 | Fixed | RHSA-2013:0963 |
| Red Hat Enterprise Linux 5 | java-1.5.0-ibm | Not affected | n/a |
| Red Hat Enterprise Linux 5 | java-1.6.0-ibm | Not affected | n/a |
| Red Hat Enterprise Linux 6 | java-1.5.0-ibm | Not affected | n/a |
| Red Hat Enterprise Linux 6 | java-1.6.0-ibm | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
No CWE recorded.
References (16)
- http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00027.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00028.html vendor-advisoryx_refsource_SUSE
- http://marc.info/?l=bugtraq&m=137545505800971&w=2 vendor-advisoryx_refsource_HP
- http://rhn.redhat.com/errata/RHSA-2013-0963.html vendor-advisoryx_refsource_REDHAT
- http://rhn.redhat.com/errata/RHSA-2013-1060.html vendor-advisoryx_refsource_REDHAT
- http://secunia.com/advisories/54154 third-party-advisoryx_refsource_SECUNIA
- http://www-01.ibm.com/support/docview.wss?uid=swg21642336 x_refsource_CONFIRM
- http://www-01.ibm.com/support/docview.wss?uid=swg21644197 x_refsource_CONFIRM
- http://www.oracle.com/technetwork/topics/security/javacpujun2013-1899847.html x_refsource_CONFIRMVendor Advisory
- http://www.us-cert.gov/ncas/alerts/TA13-169A third-party-advisoryx_refsource_CERTUS Government Resource
- https://access.redhat.com/security/cve/CVE-2013-2462 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=975769 Issue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2013-2462
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17257 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19378 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2013-2462
Change history (0)
No recorded changes yet.