PT-2013-3779 · Openjdk+5 · Openjdk+6
Stefan Cornelius
·
Publicado
2013-06-18
·
Atualizado
2024-06-15
·
CVE-2013-2445
CVSS v2.0
7.8
Alta
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Oracle Java SE versions prior to 7 Update 21
Oracle Java SE versions prior to 6 Update 45
Oracle Java SE versions prior to 5.0 Update 45
OpenJDK 7
Description
The issue affects the Java Runtime Environment component, allowing remote attackers to affect availability via unknown vectors related to Hotspot. There are also claims that this issue may allow remote attackers to bypass the Java sandbox via vectors related to handling of memory allocation errors.
Recommendations
For Oracle Java SE versions prior to 7 Update 21, update to a version newer than 7 Update 21.
For Oracle Java SE versions prior to 6 Update 45, update to a version newer than 6 Update 45.
For Oracle Java SE versions prior to 5.0 Update 45, update to a version newer than 5.0 Update 45.
For OpenJDK 7, update to a newer version of OpenJDK.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Centos
Hp-Ux
Java Platform
Java Se
Openjdk
Red Hat
Suse