PT-2013-3754 · Openjdk+7 · Openjdk+8
Publicado
2013-04-17
·
Atualizado
2024-06-15
·
CVE-2013-2419
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Oracle Java SE versions prior to 7 Update 18
Oracle Java SE versions prior to 6 Update 44
Oracle Java SE versions prior to 5.0 Update 42
OpenJDK versions 6 and 7
Description
The issue allows remote attackers to affect availability via unknown vectors related to 2D. There are claims from another vendor that this issue is related to font processing errors in the International Components for Unicode (ICU) Layout Engine before 51.2.
Recommendations
For Oracle Java SE versions prior to 7 Update 18, update to version 7 Update 18 or later.
For Oracle Java SE versions prior to 6 Update 44, update to version 6 Update 44 or later.
For Oracle Java SE versions prior to 5.0 Update 42, update to version 5.0 Update 42 or later.
For OpenJDK versions 6 and 7, consider upgrading to a newer version that may include fixes for this issue, as specific guidance for OpenJDK is not provided.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Centos
Hp-Ux
International Components For Unicode (Icu) Layout Engine
Java Platform
Java Se
Openjdk
Red Hat
Suse
Ubuntu