Vulnerability Description
Unspecified vulnerability in Oracle Java SE 7u45 and JavaFX 2.2.45 allows remote attackers to affect confidentiality via unknown vectors related to JavaFX.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Redhat | Enterprise Linux Desktop Supplementary | 5.0 |
| Redhat | Enterprise Linux Hpc Node Supplementary | 6.0 |
| Redhat | Enterprise Linux Server Supplementary | 5.0 |
| Redhat | Enterprise Linux Server Supplementary Aus | 6.5 |
| Redhat | Enterprise Linux Server Supplementary Eus | 6.5.z |
| Redhat | Enterprise Linux Workstation Supplementary | 6.0 |
| Hp | Jdk | <= 7.0.08 |
| Hp | Jre | <= 7.0.08 |
| Hp | Hp-Ux | b.11.23 |
| Oracle | Jre | 1.7.0 |
| Oracle | Javafx | 2.2.45 |
References
- http://marc.info/?l=bugtraq&m=139402697611681&w=2Third Party Advisory
- http://osvdb.org/102022Broken Link
- http://rhn.redhat.com/errata/RHSA-2014-0030.htmlThird Party Advisory
- http://secunia.com/advisories/56484Permissions Required
- http://secunia.com/advisories/56485Permissions Required
- http://secunia.com/advisories/56535Permissions Required
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.htmlVendor Advisory
- http://www.securityfocus.com/bid/64758Third Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/64906Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1029608Third Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/90353
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-cThird Party Advisory
- http://marc.info/?l=bugtraq&m=139402697611681&w=2Third Party Advisory
- http://osvdb.org/102022Broken Link
- http://rhn.redhat.com/errata/RHSA-2014-0030.htmlThird Party Advisory
FAQ
What is CVE-2013-5895?
CVE-2013-5895 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Unspecified vulnerability in Oracle Java SE 7u45 and JavaFX 2.2.45 allows remote attackers to affect confidentiality via unknown vectors related to JavaFX.
How severe is CVE-2013-5895?
CVE-2013-5895 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-5895?
Check the references section above for vendor advisories and patch information. Affected products include: Redhat Enterprise Linux Desktop Supplementary, Redhat Enterprise Linux Hpc Node Supplementary, Redhat Enterprise Linux Server Supplementary, Redhat Enterprise Linux Server Supplementary Aus, Redhat Enterprise Linux Server Supplementary Eus.