PT-2013-3755 · Oracle+4 · Java Se+6

Published

2013-04-17

·

Updated

2024-06-15

·

CVE-2013-2420

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Java SE versions prior to 7 Update 17 Java SE versions prior to 6 Update 43 Java SE versions prior to 5.0 Update 41 OpenJDK 6 and 7
Description The issue affects confidentiality, integrity, and availability, and is related to the 2D component in the Java Runtime Environment. It may involve insufficient validation of images, possibly related to offsets in the awt ImageRep.c file.
Recommendations For Java SE versions prior to 7 Update 17, update to version 7 Update 17 or later. For Java SE versions prior to 6 Update 43, update to version 6 Update 43 or later. For Java SE versions prior to 5.0 Update 41, update to version 5.0 Update 41 or later. For OpenJDK 6 and 7, consider disabling the awt ImageRep.c functionality until a patch is available.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CESA-2013_0751
CESA-2013_0770
CVE-2013-2420
HPSBUX02889
HPSBUX02922
OPENSUSE-SU-2024:10534-1
RHSA-2013:0751
RHSA-2013:0752
RHSA-2013:0757
RHSA-2013:0758
RHSA-2013:0770
RHSA-2013:0822
RHSA-2013:0823
RHSA-2013:0855
RHSA-2013:1455
RHSA-2013:1456
RHSA-2013_0751
RHSA-2013_0752
RHSA-2013_0757
RHSA-2013_0758
RHSA-2013_0770
RHSA-2013_0822
RHSA-2013_0823
RHSA-2013_0855
ZDI-13-073

Affected Products

Centos
Hp-Ux
Java Platform
Java Se
Openjdk
Red Hat
Suse