First published: Sat Feb 02 2013(Updated: )
Unspecified vulnerability in the JavaFX component in Oracle Java SE JavaFX 2.2.4 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than other CVEs listed in the February 2013 CPU.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle JavaFX | <=2.2.4 | |
Oracle JavaFX | =2.0 | |
Oracle JavaFX | =2.0.2 | |
Oracle JavaFX | =2.0.3 | |
Oracle JavaFX | =2.1 | |
Oracle JavaFX | =2.2 | |
Oracle JavaFX | =2.2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-1472 has not been assigned a specific severity score, but it poses risks to confidentiality, integrity, and availability.
CVE-2013-1472 affects Oracle JavaFX versions 2.2.4 and earlier, as well as specific earlier versions such as 2.0, 2.0.2, 2.0.3, 2.1, and 2.2.
To mitigate CVE-2013-1472, upgrade to a version of Oracle JavaFX that is later than 2.2.4.
There are no specific workaround solutions provided for CVE-2013-1472, and upgrading is the recommended action.
Yes, CVE-2013-1472 can be exploited remotely, allowing attackers to potentially access sensitive data or disrupt service.