Apple Java security update for CVE-2013-0427
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
5 | (AV:N/AC:L/Au:N/C:N/I:P/A:N) | February 01, 2013 | February 03, 2013 | December 12, 2013 |
Description
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11, 6 through Update 38, and 5.0 through Update 38, and OpenJDK 6 and 7, allows remote attackers to affect integrity via unknown vectors related to Libraries. NOTE: the previous information is from the February 2013 CPU. Oracle has not commented on claims from another vendor that this issue allows remote attackers to interrupt certain threads that should not be interrupted.
Scan For This Vulnerability
Use our top-rated tool to discover, prioritize, and remediate your vulnerabilities
References
- CERT-TA13-032A
- CERT-VN-858729
- CVE-2013-0427
- OVAL-OVAL16013
- OVAL-OVAL18641
- OVAL-OVAL19245
- OVAL-OVAL19488
- REDHAT-RHSA-2013:0236
- REDHAT-RHSA-2013:0237
- REDHAT-RHSA-2013:0245
- REDHAT-RHSA-2013:0246
- REDHAT-RHSA-2013:0247
- REDHAT-RHSA-2013:1455
- REDHAT-RHSA-2013:1456
- URL: http://support.apple.com/kb/HT5647
- URL: http://support.apple.com/kb/HT5666
Solution Reference
Java Security UpdateSolution
apple-java-upgrade-1_6_0_41Related Vulnerabilities
- RHSA-2013:0245: java-1.6.0-openjdk security update
- HP-UX: CVE-2013-0427: Running Java, Remote Unauthorized Access, Disclosure of Information, and Other Vulnerabilities
- USN-1724-1: OpenJDK vulnerabilities
- RHSA-2013:0237: java-1.7.0-oracle security update
- RHSA-2013:0247: java-1.7.0-openjdk security update
- SUSE Linux Security Vulnerability: CVE-2013-0427
- Java CPU February 2013 Java Runtime Environment Libraries vulnerability (CVE-2013-0427)
- RHSA-2013:0624: java-1.5.0-ibm security update
- RHSA-2013:0625: java-1.6.0-ibm security update
- RHSA-2013:0236: java-1.6.0-sun security update
- ELSA-2013-0245 Critical: Oracle Linux java-1.6.0-openjdk security update
- ELSA-2013-0247 Important: Oracle Linux java-1.7.0-openjdk security update
- RHSA-2013:0626: java-1.7.0-ibm security update
- ELSA-2013-0246 Important: Oracle Linux java-1.6.0-openjdk security update
- Amazon Linux AMI: Security patch for java-1.6.0-openjdk (ALAS-2013-155) (multiple CVEs)
- Gentoo Linux: CVE-2013-0427: IcedTea JDK: Multiple vulnerabilities
- RHSA-2013:0246: java-1.6.0-openjdk security update
- RHSA-2013:1455: Red Hat Network Satellite server IBM Java Runtime security update
- RHSA-2013:1456: Red Hat Network Satellite server IBM Java Runtime security update