CVE-2013-2418

Oracle Java SE <7.17 & <6.43 - Info Disclosure

Title source: llm
STIX 2.1

Description

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier and 6 Update 43 and earlier allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.

References (12)

Core 12
Core References
Vendor Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2013-0758.html
Vendor Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2013-1455.html
Vendor Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2013-0757.html
Vendor Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2013-1456.html
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16444
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/ncas/alerts/TA13-107A
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19584
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/59145
Mailing List vendor-advisory x_refsource_hp
http://marc.info/?l=bugtraq&m=137283787217316&w=2

Scores

EPSS 0.0014
EPSS Percentile 33.1%

Details

Status published
Products (6)
oracle/jdk 1.7.0 (13 CPE variants)
oracle/jdk 1.6.0 update22 (17 CPE variants)
oracle/jdk < 1.6.0
oracle/jdk < 1.7.0
oracle/jre 1.7.0 (13 CPE variants)
oracle/jre 1.6.0 update22 (5 CPE variants)
Published Apr 17, 2013
Tracked Since Feb 18, 2026