CVE-2013-0432: Medium severity oracle jre vulnerability
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11, 6 through Update 38, 5.0 through Update 38, and 1.4.240 and earlier, and OpenJDK 6 and 7, allows remote attackers to affect confidentiality and integrity via vectors related to AWT. NOTE: the previous information is from the February 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to "insufficient clipboard access premission checks."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0432?
CVE-2013-0432 has a critical severity rating as it allows remote attackers to affect confidentiality and integrity of targeted systems.
How do I fix CVE-2013-0432?
To mitigate CVE-2013-0432, users should update their Java Runtime Environment to the latest version where the vulnerability has been addressed.
Which versions of Java are affected by CVE-2013-0432?
CVE-2013-0432 affects Oracle Java SE versions 7 through Update 11 and earlier, as well as OpenJDK 6 and 7.
Can CVE-2013-0432 be exploited remotely?
Yes, CVE-2013-0432 can be exploited remotely due to its nature of affecting the Java Runtime Environment, allowing attackers to execute malicious code.
What components are involved in CVE-2013-0432?
CVE-2013-0432 involves the AWT component within the Java Runtime Environment, which can be exploited for gaining unauthorized access.