Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-1927

Опубликовано: 29 апр. 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8

Описание

The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitrary code via a crafted file that validates as both a GIF and a Java JAR file, aka "GIFAR."

РелизСтатусПримечание
devel

released

1.3.2-1ubuntu1
hardy

DNE

lucid

released

1.2.3-0ubuntu0.10.04.1
oneiric

released

1.2.3-0ubuntu0.11.10.1
precise

released

1.2.3-0ubuntu0.12.04.1
quantal

released

1.3.2-1ubuntu0.12.10.1
upstream

released

1.2.3, 1.3.2

Показывать по

EPSS

Процентиль: 84%
0.02192
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

redhat
больше 12 лет назад

The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitrary code via a crafted file that validates as both a GIF and a Java JAR file, aka "GIFAR."

nvd
больше 12 лет назад

The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitrary code via a crafted file that validates as both a GIF and a Java JAR file, aka "GIFAR."

debian
больше 12 лет назад

The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remo ...

github
больше 3 лет назад

The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitrary code via a crafted file that validates as both a GIF and a Java JAR file, aka "GIFAR."

oracle-oval
больше 12 лет назад

ELSA-2013-0753: icedtea-web security update (MODERATE)

EPSS

Процентиль: 84%
0.02192
Низкий

6.8 Medium

CVSS2