Куда я попал?
SECURITM это SGRC система, ? автоматизирующая процессы в службах информационной безопасности. SECURITM помогает построить и управлять ИСПДн, КИИ, ГИС, СМИБ/СУИБ, банковскими системами защиты.
А еще SECURITM это место для обмена опытом и наработками для служб безопасности.

CVE-2013-2470

PUBLISHED 06.08.2024

CNA: oracle

Обновлено: 04.01.2018
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier, 6 Update 45 and earlier, and 5.0 Update 45 and earlier, and OpenJDK 7, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D. NOTE: the previous information is from the June 2013 CPU. Oracle has not commented on claims from another vendor that this issue allows remote attackers to bypass the Java sandbox via vectors related to "ImagingLib byte lookup processing."

EPSS

Вероятность Severity Процентиль ? Дата расчёта
54.41% CRITICAL 98.06 23.05.2026

Exploits & Shellcodes

Идентификатор Тип Описание Дата публикации
EDB-28050 Exploit Oracle Java lookUpByteBI - Heap Buffer Overflow 03.09.2013

Доп. Информация

Product Status

n/a
Product: n/a
Vendor: n/a
Default status: Не определен
Версии:
Затронутые версии Статус
Наблюдалось в версии n/a affected
 

Ссылки

https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19348
http://rhn.redhat.com/errata/RHSA-2013-1060.html
http://marc.info/?l=bugtraq&m=137545592101387&w=2
https://access.redhat.com/errata/RHSA-2014:0414
http://security.gentoo.org/glsa/glsa-201406-32.xml
http://www.oracle.com/technetwork/topics/security/javacpujun2013-1899847.html
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00031.html
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00028.html
http://marc.info/?l=bugtraq&m=137545505800971&w=2
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00027.html
http://secunia.com/advisories/54154
http://rhn.redhat.com/errata/RHSA-2013-1455.html
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c03898880
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c03898880
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19655
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00029.html
http://rhn.redhat.com/errata/RHSA-2013-1059.html
http://hg.openjdk.java.net/jdk7u/jdk7u-dev/jdk/rev/89d9ec9e80c1
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19517
http://lists.opensuse.org/opensuse-security-announce/2013-08/msg00000.html
http://www.securityfocus.com/bid/60651
http://rhn.redhat.com/errata/RHSA-2013-1081.html
http://www.us-cert.gov/ncas/alerts/TA13-169A
http://advisories.mageia.org/MGASA-2013-0185.html
https://bugzilla.redhat.com/show_bug.cgi?id=975099
http://rhn.redhat.com/errata/RHSA-2013-0963.html
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00026.html
http://rhn.redhat.com/errata/RHSA-2013-1456.html
http://www.mandriva.com/security/advisories?name=MDVSA-2013:183
http://www-01.ibm.com/support/docview.wss?uid=swg21642336
http://lists.opensuse.org/opensuse-security-announce/2013-08/msg00003.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16806

CVE Program Container

Обновлено: 06.08.2024
SSVC and KEV, plus CVSS and CWE if not provided by the CNA.

Ссылки

https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19348
http://rhn.redhat.com/errata/RHSA-2013-1060.html
http://marc.info/?l=bugtraq&m=137545592101387&w=2
https://access.redhat.com/errata/RHSA-2014:0414
http://security.gentoo.org/glsa/glsa-201406-32.xml
http://www.oracle.com/technetwork/topics/security/javacpujun2013-1899847.html
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00031.html
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00028.html
http://marc.info/?l=bugtraq&m=137545505800971&w=2
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00027.html
http://secunia.com/advisories/54154
http://rhn.redhat.com/errata/RHSA-2013-1455.html
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c03898880
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c03898880
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19655
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00029.html
http://rhn.redhat.com/errata/RHSA-2013-1059.html
http://hg.openjdk.java.net/jdk7u/jdk7u-dev/jdk/rev/89d9ec9e80c1
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19517
http://lists.opensuse.org/opensuse-security-announce/2013-08/msg00000.html
http://www.securityfocus.com/bid/60651
http://rhn.redhat.com/errata/RHSA-2013-1081.html
http://www.us-cert.gov/ncas/alerts/TA13-169A
http://advisories.mageia.org/MGASA-2013-0185.html
https://bugzilla.redhat.com/show_bug.cgi?id=975099
http://rhn.redhat.com/errata/RHSA-2013-0963.html
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00026.html
http://rhn.redhat.com/errata/RHSA-2013-1456.html
http://www.mandriva.com/security/advisories?name=MDVSA-2013:183
http://www-01.ibm.com/support/docview.wss?uid=swg21642336
http://lists.opensuse.org/opensuse-security-announce/2013-08/msg00003.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16806

Мы используем cookie-файлы, чтобы получить статистику, которая помогает нам улучшить сервис для вас с целью персонализации сервисов и предложений. Вы может прочитать подробнее о cookie-файлах или изменить настройки браузера. Продолжая пользоваться сайтом, вы даёте согласие на использование ваших cookie-файлов и соглашаетесь с Политикой обработки персональных данных.