cbcvebase.
CVE-2013-2470
published 2013-06-18

CVE-2013-2470: Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier, 6 Update 45 and earlier, and 5.0 Update 45…

PriorityP268critical10CVSS 2.0
AVNACLAuNCCICAC
EXPLOIT
EPSS
22.99%
97.5th percentile
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier, 6 Update 45 and earlier, and 5.0 Update 45 and earlier, and OpenJDK 7, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D. NOTE: the previous information is from the June 2013 CPU. Oracle has not commented on claims from another vendor that this issue allows remote attackers to bypass the Java sandbox via vectors related to "ImagingLib byte lookup processing."

Affected

16 ranges
VendorProductVersion rangeFixed in
oraclejdk<= 1.7.0
oraclejdk<= 1.6.0
oraclejdk<= 1.5.0
oraclejdk
oraclejdk
oraclejdk
oraclejre<= 1.7.0
oraclejre<= 1.6.0
oraclejre<= 1.5.0
oraclejre
oraclejre
oraclejre
sunjdk
sunjdk
sunjre
sunjre

Detection & IOCsextracted from sources · hover to see the quote

urlhttps://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/28050.zip
processJava_sun_awt_image_ImagingLib_lookupByteBI
  • Monitor for Java applet execution triggering the ImagingLib lookupByteBI native function with mismatched source/destination BufferedImage buffer sizes, which can indicate heap buffer overflow exploitation.
  • Detect Java sandbox bypass attempts via ImagingLib byte lookup processing in untrusted applet or application contexts.
  • Flag delivery of HTML files loading Java applets (e.g., HelloApplet.html) from untrusted sources, as the PoC uses a browser-opened applet HTML page.
  • The overflow condition occurs when src->width * src->height exceeds the dst buffer size; look for anomalous 2D image processing with oversized source rasters relative to destination rasters in JRE 7u21 and earlier.
  • ·Vulnerability affects JRE 7 Update 21 and earlier, JRE 6 Update 45 and earlier, and JRE 5.0 Update 45 and earlier; exploitation is only possible on unpatched versions.
  • ·PoC was tested specifically on Windows 7 Enterprise with JRE 7 Update 21; behavior on other platforms may differ.

CVSS provenance

nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
vendor_redhat10.0CRITICAL
vendor_ubuntu3.6LOW
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.