CVE-2013-2456
18.06.2013, 22:55
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier, 6 Update 45 and earlier, and 5.0 Update 45 and earlier, and OpenJDK 7, allows remote attackers to affect confidentiality via unknown vectors related to Serialization. NOTE: the previous information is from the June 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to improper access checks for subclasses in the ObjectOutputStream class.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| oracle | jre | 𝑥 ≤ 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jre | 1.7.0 |
| oracle | jdk | 𝑥 ≤ 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jdk | 1.7.0 |
| oracle | jre | 𝑥 ≤ 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| oracle | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| oracle | jdk | 𝑥 ≤ 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| oracle | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| sun | jdk | 1.6.0 |
| oracle | jre | 𝑥 ≤ 1.5.0 |
| oracle | jre | 1.5.0 |
| oracle | jre | 1.5.0 |
| oracle | jre | 1.5.0 |
| oracle | jre | 1.5.0 |
| oracle | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| oracle | jdk | 𝑥 ≤ 1.5.0 |
| oracle | jdk | 1.5.0 |
| oracle | jdk | 1.5.0 |
| oracle | jdk | 1.5.0 |
| oracle | jdk | 1.5.0 |
| oracle | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
| sun | jdk | 1.5.0 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||
|---|---|---|---|---|---|---|---|---|---|
| openjdk-6 |
| ||||||||
| openjdk-6b18 |
| ||||||||
| openjdk-7 |
|
openSUSE / SLES Releases
openSUSE Product | |||||||
|---|---|---|---|---|---|---|---|
| java-1_7_0-openjdk |
| ||||||
| java-1_7_0-openjdk-demo |
| ||||||
| java-1_7_0-openjdk-devel |
| ||||||
| java-1_7_0-openjdk-headless |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||
|---|---|---|---|
| java-1.5.0-ibm |
| ||
| java-1.5.0-ibm-demo |
| ||
| java-1.5.0-ibm-devel |
| ||
| java-1.5.0-ibm-javacomm |
| ||
| java-1.5.0-ibm-jdbc |
| ||
| java-1.5.0-ibm-plugin |
| ||
| java-1.5.0-ibm-src |
| ||
| java-1.6.0-ibm |
| ||
| java-1.6.0-ibm-demo |
| ||
| java-1.6.0-ibm-devel |
| ||
| java-1.6.0-ibm-javacomm |
| ||
| java-1.6.0-ibm-jdbc |
| ||
| java-1.6.0-ibm-plugin |
| ||
| java-1.6.0-ibm-src |
| ||
| java-1.6.0-openjdk |
| ||
| java-1.6.0-openjdk-demo |
| ||
| java-1.6.0-openjdk-devel |
| ||
| java-1.6.0-openjdk-javadoc |
| ||
| java-1.6.0-openjdk-src |
| ||
| java-1.7.0-ibm |
| ||
| java-1.7.0-ibm-demo |
| ||
| java-1.7.0-ibm-devel |
| ||
| java-1.7.0-ibm-jdbc |
| ||
| java-1.7.0-ibm-plugin |
| ||
| java-1.7.0-ibm-src |
| ||
| java-1.7.0-openjdk |
| ||
| java-1.7.0-openjdk-demo |
| ||
| java-1.7.0-openjdk-devel |
| ||
| java-1.7.0-openjdk-javadoc |
| ||
| java-1.7.0-openjdk-src |
| ||
| java-1.7.0-oracle |
| ||
| java-1.7.0-oracle-devel |
| ||
| java-1.7.0-oracle-javafx |
| ||
| java-1.7.0-oracle-jdbc |
| ||
| java-1.7.0-oracle-plugin |
| ||
| java-1.7.0-oracle-src |
|
References