First published: Wed Apr 17 2013(Updated: )
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier and JavaFX 2.2.7 and earlier allows remote attackers to affect confidentiality via unknown vectors related to JavaFX.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle JRE | <=1.7.0 | |
Oracle JRE | =1.7.0 | |
Oracle JRE | =1.7.0-update1 | |
Oracle JRE | =1.7.0-update10 | |
Oracle JRE | =1.7.0-update11 | |
Oracle JRE | =1.7.0-update13 | |
Oracle JRE | =1.7.0-update15 | |
Oracle JRE | =1.7.0-update2 | |
Oracle JRE | =1.7.0-update3 | |
Oracle JRE | =1.7.0-update4 | |
Oracle JRE | =1.7.0-update5 | |
Oracle JRE | =1.7.0-update6 | |
Oracle JRE | =1.7.0-update7 | |
Oracle JRE | =1.7.0-update9 | |
Oracle Java SE 7 | <=1.7.0 | |
Oracle Java SE 7 | =1.7.0 | |
Oracle Java SE 7 | =1.7.0-update1 | |
Oracle Java SE 7 | =1.7.0-update10 | |
Oracle Java SE 7 | =1.7.0-update11 | |
Oracle Java SE 7 | =1.7.0-update13 | |
Oracle Java SE 7 | =1.7.0-update15 | |
Oracle Java SE 7 | =1.7.0-update2 | |
Oracle Java SE 7 | =1.7.0-update3 | |
Oracle Java SE 7 | =1.7.0-update4 | |
Oracle Java SE 7 | =1.7.0-update5 | |
Oracle Java SE 7 | =1.7.0-update6 | |
Oracle Java SE 7 | =1.7.0-update7 | |
Oracle Java SE 7 | =1.7.0-update9 | |
Oracle JavaFX | <=2.2.7 | |
Oracle JavaFX | =2.0 | |
Oracle JavaFX | =2.0.2 | |
Oracle JavaFX | =2.0.3 | |
Oracle JavaFX | =2.1 | |
Oracle JavaFX | =2.2 | |
Oracle JavaFX | =2.2.3 | |
Oracle JavaFX | =2.2.4 | |
Oracle JavaFX | =2.2.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-1561 is rated as a critical vulnerability that allows remote attackers to impact confidentiality.
To fix CVE-2013-1561, update your Java Runtime Environment to version 7 Update 21 or later.
CVE-2013-1561 affects Oracle Java SE 7 Update 17 and earlier, as well as JavaFX 2.2.7 and earlier versions.
The risks include the possibility of remote attackers exploiting the vulnerability to gain access to confidential information.
No, CVE-2013-1561 is not a threat in versions of Java that have been updated past the vulnerable releases.