Vulnerability Description
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Jre | <= 1.7.0 |
| Oracle | Jdk | <= 1.7.0 |
References
- http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00027.html
- http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00028.html
- http://marc.info/?l=bugtraq&m=137545505800971&w=2
- http://rhn.redhat.com/errata/RHSA-2013-0963.html
- http://rhn.redhat.com/errata/RHSA-2013-1060.html
- http://secunia.com/advisories/54154
- http://www-01.ibm.com/support/docview.wss?uid=swg21642336
- http://www-01.ibm.com/support/docview.wss?uid=swg21644197
- http://www.oracle.com/technetwork/topics/security/javacpujun2013-1899847.htmlVendor Advisory
- http://www.us-cert.gov/ncas/alerts/TA13-169AUS Government Resource
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3
- http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00027.html
- http://lists.opensuse.org/opensuse-security-announce/2013-07/msg00028.html
- http://marc.info/?l=bugtraq&m=137545505800971&w=2
FAQ
What is CVE-2013-2462?
CVE-2013-2462 is a vulnerability with a CVSS score of 9.3 (HIGH). Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier allows remote attackers to affect confidentiality, integrity, and availability via u...
How severe is CVE-2013-2462?
CVE-2013-2462 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-2462?
Check the references section above for vendor advisories and patch information. Affected products include: Oracle Jre, Oracle Jdk.