First published: Wed Apr 17 2013(Updated: )
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier and JavaFX 2.2.7 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle JRE | <=1.7.0 | |
Oracle JRE | =1.7.0 | |
Oracle JRE | =1.7.0-update1 | |
Oracle JRE | =1.7.0-update10 | |
Oracle JRE | =1.7.0-update11 | |
Oracle JRE | =1.7.0-update13 | |
Oracle JRE | =1.7.0-update15 | |
Oracle JRE | =1.7.0-update2 | |
Oracle JRE | =1.7.0-update3 | |
Oracle JRE | =1.7.0-update4 | |
Oracle JRE | =1.7.0-update5 | |
Oracle JRE | =1.7.0-update6 | |
Oracle JRE | =1.7.0-update7 | |
Oracle JRE | =1.7.0-update9 | |
Oracle Java SE 7 | <=1.7.0 | |
Oracle Java SE 7 | =1.7.0 | |
Oracle Java SE 7 | =1.7.0-update1 | |
Oracle Java SE 7 | =1.7.0-update10 | |
Oracle Java SE 7 | =1.7.0-update11 | |
Oracle Java SE 7 | =1.7.0-update13 | |
Oracle Java SE 7 | =1.7.0-update15 | |
Oracle Java SE 7 | =1.7.0-update2 | |
Oracle Java SE 7 | =1.7.0-update3 | |
Oracle Java SE 7 | =1.7.0-update4 | |
Oracle Java SE 7 | =1.7.0-update5 | |
Oracle Java SE 7 | =1.7.0-update6 | |
Oracle Java SE 7 | =1.7.0-update7 | |
Oracle Java SE 7 | =1.7.0-update9 | |
Oracle JavaFX | <=2.2.7 | |
Oracle JavaFX | =2.0 | |
Oracle JavaFX | =2.0.2 | |
Oracle JavaFX | =2.0.3 | |
Oracle JavaFX | =2.1 | |
Oracle JavaFX | =2.2 | |
Oracle JavaFX | =2.2.3 | |
Oracle JavaFX | =2.2.4 | |
Oracle JavaFX | =2.2.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-2434 is classified as a high severity vulnerability affecting confidentiality, integrity, and availability within the Java Runtime Environment.
The fix for CVE-2013-2434 is to upgrade to a later version of Oracle Java SE or JavaFX that is not affected by this vulnerability.
CVE-2013-2434 affects Oracle Java SE 7 Update 17 and earlier, as well as JavaFX 2.2.7 and earlier versions.
Yes, CVE-2013-2434 can be exploited remotely by attackers due to unspecified vectors related to the 2D component.
Yes, users must take action by updating their Java Runtime Environment or JavaFX installations to mitigate CVE-2013-2434.