CVE-2013-0485: Critical severity ibm jdk vulnerability
IBM Java SDK updates 7 SR4-FP1, 6 SR13-FP1, 5.0 SR16-FP1 and 1.4.2 SR13-FP16 fix an unspecified security issue listed in release notes as:
IV38147 196141 Class Libraries FIX SECURITY VULNERABILITY CVE-2013-0485
http://www.ibm.com/developerworks/java/jdk/aix/j732/Java7.fixes.html#SR4FP1 http://www.ibm.com/developerworks/java/jdk/aix/j664/Java664.fixes.html#SR13FP1 http://www.ibm.com/developerworks/java/jdk/aix/j532/fixes.html#SR16FP1 http://www.ibm.com/developerworks/java/jdk/aix/14264/fixes.html#SR13FP16
No further details are currently available for this issue.
Other sources
Unspecified vulnerability in IBM Java SDK 7 before SR4-FP1, 6 before SR13-FP1, 5.0 before SR16-FP1, and 1.4.2 before SR13-FP16 has unknown impact and attack vectors related to Class Libraries.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0485?
CVE-2013-0485 is classified as a security vulnerability that impacts the IBM Java SDK.
How do I fix CVE-2013-0485?
To fix CVE-2013-0485, update to the IBM Java SDK versions 1.4.2 SR13-FP16, 5.0 SR16-FP1, 6 SR13-FP1, or 7 SR4-FP1.
What software is affected by CVE-2013-0485?
CVE-2013-0485 affects IBM Java SDK versions 1.4.2, 5.0, 6.0, and 7.0.
Is there a workaround for CVE-2013-0485?
There is no known workaround for CVE-2013-0485; updating the SDK is the recommended action.
When was CVE-2013-0485 disclosed?
CVE-2013-0485 was disclosed as part of the IBM Java SDK updates in 2013.