Lucene search

K
ubuntucveUbuntu.comUB:CVE-2013-5870
HistoryJan 15, 2014 - 12:00 a.m.

CVE-2013-5870

2014-01-1500:00:00
ubuntu.com
ubuntu.com
6

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.019

Percentile

88.5%

Unspecified vulnerability in Oracle Java SE 7u45 and JavaFX 2.2.45 allows
remote attackers to affect confidentiality, integrity, and availability via
unknown vectors related to JavaFX.

Notes

Author Note
mdeslaur in lucid+, NetX and the plugin moved to the icedtea-web package
jdstrand sun-java6 is not redistributable, no longer in the archive and no longer tracked sun-java5 is EOL upstream and no longer tracked Based on Oracle advisory and lack of fixes from OpenJDK, marking as ‘not-affected’ for now (which is the best we can do until more information comes to light)

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.019

Percentile

88.5%