Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.803327
Kategorie:General
Titel:Oracle Java SE Multiple Vulnerabilities -01 March 13 (Windows)
Zusammenfassung:This host is installed with Oracle Java SE and is prone to; multiple vulnerabilities.
Beschreibung:Summary:
This host is installed with Oracle Java SE and is prone to
multiple vulnerabilities.

Vulnerability Insight:
Multiple flaws due to:

- Unspecified error in 2D component.

- Error in color management(CMM) functionality in the 2D component via image
with crafted raster parameter.

Vulnerability Impact:
Successful exploitation allows remote attackers to execute arbitrary code,
corrupt memory or cause a denial of service.

Affected Software/OS:
Oracle Java SE Versions 7 Update 15 and earlier, 6 Update 41 and earlier,
5 Update 40 and earlier on Windows

Solution:
Apply the patch from the referenced advisory.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: BugTraq ID: 58296
BugTraq ID: 58238
Common Vulnerability Exposure (CVE) ID: CVE-2013-1493
http://www.securityfocus.com/bid/58238
Cert/CC Advisory: TA13-064A
http://www.us-cert.gov/ncas/alerts/TA13-064A
CERT/CC vulnerability note: VU#688246
http://www.kb.cert.org/vuls/id/688246
http://www.exploit-db.com/exploits/24904
http://security.gentoo.org/glsa/glsa-201406-32.xml
HPdes Security Advisory: HPSBMU02964
http://h20565.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04117626-1
HPdes Security Advisory: HPSBUX02857
http://marc.info/?l=bugtraq&m=136439120408139&w=2
HPdes Security Advisory: HPSBUX02864
http://marc.info/?l=bugtraq&m=136570436423916&w=2
HPdes Security Advisory: SSRT101103
HPdes Security Advisory: SSRT101156
http://www.mandriva.com/security/advisories?name=MDVSA-2013:095
http://blog.fireeye.com/research/2013/02/yaj0-yet-another-java-zero-day-2.html
http://www.symantec.com/connect/blogs/latest-java-zero-day-shares-connections-bit9-security-incident
https://krebsonsecurity.com/2013/03/new-java-0-day-attack-echoes-bit9-breach/
https://twitter.com/jduck1337/status/307629902574800897
http://mail.openjdk.java.net/pipermail/distro-pkg-dev/2013-March/022145.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19246
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19477
RedHat Security Advisories: RHSA-2013:0601
http://rhn.redhat.com/errata/RHSA-2013-0601.html
RedHat Security Advisories: RHSA-2013:0603
http://rhn.redhat.com/errata/RHSA-2013-0603.html
RedHat Security Advisories: RHSA-2013:0604
http://rhn.redhat.com/errata/RHSA-2013-0604.html
RedHat Security Advisories: RHSA-2013:1455
http://rhn.redhat.com/errata/RHSA-2013-1455.html
RedHat Security Advisories: RHSA-2013:1456
http://rhn.redhat.com/errata/RHSA-2013-1456.html
http://www.securitytracker.com/id/1029803
SuSE Security Announcement: SUSE-SU-2013:0434 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2013-03/msg00011.html
SuSE Security Announcement: SUSE-SU-2013:0701 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2013-04/msg00020.html
SuSE Security Announcement: openSUSE-SU-2013:0430 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2013-03/msg00009.html
SuSE Security Announcement: openSUSE-SU-2013:0438 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2013-03/msg00012.html
http://www.ubuntu.com/usn/USN-1755-2
Common Vulnerability Exposure (CVE) ID: CVE-2013-0809
http://www.securityfocus.com/bid/58296
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19076
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19320
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19479
CopyrightCopyright (C) 2013 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.