CVE-2013-2437Oracle JDK vulnerability

5 documents5 sources
Severity
5.0MEDIUMNVD
EPSS
3.9%
top 11.78%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 18
Latest updateMay 14

Description

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier and 6 Update 45 and earlier allows remote attackers to affect confidentiality via unknown vectors related to Deployment.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages4 packages

NVDoracle/jdk1.7.0+3
NVDoracle/jre1.7.0+3
NVDsun/jdk1.6.0
NVDsun/jre1.6.0

🔴Vulnerability Details

2
GHSA
GHSA-823g-hf5q-r787: Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier and 6 Update 45 and earlier allows2022-05-14
CVEList
CVE-2013-2437: Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier and 6 Update 45 and earlier allows2013-06-18

📋Vendor Advisories

1
Red Hat
JDK: unspecified vulnerability fixed in 7u25 (Deployment)2013-06-18

💬Community

1
Bugzilla
CVE-2013-2437 Oracle JDK: unspecified vulnerability fixed in 7u25 (Deployment)2013-06-19
CVE-2013-2437 — Oracle JDK vulnerability | cvebase