Куда я попал?
SECURITM это SGRC система, ? автоматизирующая процессы в службах информационной безопасности. SECURITM помогает построить и управлять ИСПДн, КИИ, ГИС, СМИБ/СУИБ, банковскими системами защиты.
А еще SECURITM это место для обмена опытом и наработками для служб безопасности.

CVE-2013-2472

PUBLISHED 06.08.2024

CNA: oracle

Обновлено: 04.01.2018
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier, 6 Update 45 and earlier, and 5.0 Update 45 and earlier, and OpenJDK 7, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D. NOTE: the previous information is from the June 2013 CPU. Oracle has not commented on claims from another vendor that this issue allows remote attackers to bypass the Java sandbox via vectors related to "Incorrect ShortBandedRaster size checks" in 2D.

EPSS

Вероятность Severity Процентиль ? Дата расчёта
54.41% CRITICAL 98.06 23.05.2026

Exploits & Shellcodes

Идентификатор Тип Описание Дата публикации
EDB-28331 Exploit Oracle Java - 'ShortComponentRaster.verify()' Memory Corruption 17.09.2013

Доп. Информация

Product Status

n/a
Product: n/a
Vendor: n/a
Default status: Не определен
Версии:
Затронутые версии Статус
Наблюдалось в версии n/a affected
 

Ссылки

http://rhn.redhat.com/errata/RHSA-2013-1060.html
http://marc.info/?l=bugtraq&m=137545592101387&w=2
https://access.redhat.com/errata/RHSA-2014:0414
http://security.gentoo.org/glsa/glsa-201406-32.xml
http://www.oracle.com/technetwork/topics/security/javacpujun2013-1899847.html
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00031.html
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00028.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18742
http://hg.openjdk.java.net/jdk7u/jdk7u-dev/jdk/rev/3cd4bec64e31
http://marc.info/?l=bugtraq&m=137545505800971&w=2
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00027.html
http://secunia.com/advisories/54154
http://rhn.redhat.com/errata/RHSA-2013-1455.html
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c03898880
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c03898880
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00029.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19543
http://www.securityfocus.com/bid/60656
http://rhn.redhat.com/errata/RHSA-2013-1059.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16712
http://lists.opensuse.org/opensuse-security-announce/2013-08/msg00000.html
http://rhn.redhat.com/errata/RHSA-2013-1081.html
http://www.us-cert.gov/ncas/alerts/TA13-169A
http://advisories.mageia.org/MGASA-2013-0185.html
http://rhn.redhat.com/errata/RHSA-2013-0963.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18846
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00026.html
http://rhn.redhat.com/errata/RHSA-2013-1456.html
https://bugzilla.redhat.com/show_bug.cgi?id=975107
http://www.mandriva.com/security/advisories?name=MDVSA-2013:183
http://www-01.ibm.com/support/docview.wss?uid=swg21642336
http://lists.opensuse.org/opensuse-security-announce/2013-08/msg00003.html

CVE Program Container

Обновлено: 06.08.2024
SSVC and KEV, plus CVSS and CWE if not provided by the CNA.

Ссылки

http://rhn.redhat.com/errata/RHSA-2013-1060.html
http://marc.info/?l=bugtraq&m=137545592101387&w=2
https://access.redhat.com/errata/RHSA-2014:0414
http://security.gentoo.org/glsa/glsa-201406-32.xml
http://www.oracle.com/technetwork/topics/security/javacpujun2013-1899847.html
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00031.html
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00028.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18742
http://hg.openjdk.java.net/jdk7u/jdk7u-dev/jdk/rev/3cd4bec64e31
http://marc.info/?l=bugtraq&m=137545505800971&w=2
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00027.html
http://secunia.com/advisories/54154
http://rhn.redhat.com/errata/RHSA-2013-1455.html
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c03898880
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c03898880
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00029.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19543
http://www.securityfocus.com/bid/60656
http://rhn.redhat.com/errata/RHSA-2013-1059.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16712
http://lists.opensuse.org/opensuse-security-announce/2013-08/msg00000.html
http://rhn.redhat.com/errata/RHSA-2013-1081.html
http://www.us-cert.gov/ncas/alerts/TA13-169A
http://advisories.mageia.org/MGASA-2013-0185.html
http://rhn.redhat.com/errata/RHSA-2013-0963.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18846
http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00026.html
http://rhn.redhat.com/errata/RHSA-2013-1456.html
https://bugzilla.redhat.com/show_bug.cgi?id=975107
http://www.mandriva.com/security/advisories?name=MDVSA-2013:183
http://www-01.ibm.com/support/docview.wss?uid=swg21642336
http://lists.opensuse.org/opensuse-security-announce/2013-08/msg00003.html

Мы используем cookie-файлы, чтобы получить статистику, которая помогает нам улучшить сервис для вас с целью персонализации сервисов и предложений. Вы может прочитать подробнее о cookie-файлах или изменить настройки браузера. Продолжая пользоваться сайтом, вы даёте согласие на использование ваших cookie-файлов и соглашаетесь с Политикой обработки персональных данных.