Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-2420

Опубликовано: 17 апр. 2013
Источник: ubuntu
Приоритет: medium
CVSS2: 10

Описание

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0 Update 41 and earlier; and OpenJDK 6 and 7; allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to insufficient "validation of images" in share/native/sun/awt/image/awt_ImageRep.c, possibly involving offsets.

РелизСтатусПримечание
devel

not-affected

hardy

DNE

lucid

not-affected

oneiric

not-affected

precise

not-affected

quantal

not-affected

raring

not-affected

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

released

6b27-1.12.5-1ubuntu1
hardy

ignored

end of life
lucid

released

6b27-1.12.5-0ubuntu0.10.04.1
oneiric

released

6b27-1.12.5-0ubuntu0.11.10.1
precise

released

6b27-1.12.5-0ubuntu0.12.04.1
quantal

released

6b27-1.12.5-0ubuntu0.12.10.1
raring

released

6b27-1.12.5-1ubuntu1
upstream

released

6u45

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

ignored

end of life
oneiric

ignored

end of life
precise

DNE

quantal

DNE

raring

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

released

7u21-2.3.9-1ubuntu1
hardy

DNE

lucid

DNE

oneiric

released

7u21-2.3.9-0ubuntu0.11.10.1
precise

released

7u21-2.3.9-0ubuntu0.12.04.1
quantal

released

7u21-2.3.9-0ubuntu0.12.10.1
raring

released

7u21-2.3.9-1ubuntu1
upstream

released

7u21

Показывать по

10 Critical

CVSS2

Связанные уязвимости

redhat
больше 12 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0 Update 41 and earlier; and OpenJDK 6 and 7; allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to insufficient "validation of images" in share/native/sun/awt/image/awt_ImageRep.c, possibly involving offsets.

nvd
больше 12 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0 Update 41 and earlier; and OpenJDK 6 and 7; allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to insufficient "validation of images" in share/native/sun/awt/image/awt_ImageRep.c, possibly involving offsets.

debian
больше 12 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) compon ...

github
больше 3 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0 Update 41 and earlier; and OpenJDK 6 and 7; allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to insufficient "validation of images" in share/native/sun/awt/image/awt_ImageRep.c, possibly involving offsets.

oracle-oval
больше 12 лет назад

ELSA-2013-0770: java-1.6.0-openjdk security update (IMPORTANT)

10 Critical

CVSS2