PT-2013-3755 · Oracle+4 · Java Se+6
Published
2013-04-17
·
Updated
2024-06-15
·
CVE-2013-2420
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Java SE versions prior to 7 Update 17
Java SE versions prior to 6 Update 43
Java SE versions prior to 5.0 Update 41
OpenJDK 6 and 7
Description
The issue affects confidentiality, integrity, and availability, and is related to the 2D component in the Java Runtime Environment. It may involve insufficient validation of images, possibly related to offsets in the
awt ImageRep.c file.Recommendations
For Java SE versions prior to 7 Update 17, update to version 7 Update 17 or later.
For Java SE versions prior to 6 Update 43, update to version 6 Update 43 or later.
For Java SE versions prior to 5.0 Update 41, update to version 5.0 Update 41 or later.
For OpenJDK 6 and 7, consider disabling the
awt ImageRep.c functionality until a patch is available.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Centos
Hp-Ux
Java Platform
Java Se
Openjdk
Red Hat
Suse