CVE-2013-5787: Critical severity oracle java se 7 vulnerability
Oracle Java SE Update 45 fixes an unspecified vulnerability in the Deployment component (CVE-2013-5787). Upstream has CVSSv2 scored this issue as: 10.0/AV:N/AC:L/Au:N/C:C/I:C/A:C
External Reference:
http://www.oracle.com/technetwork/topics/security/cpuoct2013-1899837.html
Other sources
Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5789, CVE-2013-5824, CVE-2013-5832, and CVE-2013-5852.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2013-5787?
CVE-2013-5787 is rated with a CVSSv2 score of 10.0, indicating critical severity.
How do I fix CVE-2013-5787?
To mitigate CVE-2013-5787, update to the patched versions of Java SE provided by Oracle or Red Hat.
Which software versions are impacted by CVE-2013-5787?
CVE-2013-5787 affects multiple versions of Oracle Java SE, including specific updates of JDK and JRE 6 and 7.
Is CVE-2013-5787 actively exploited?
There have been reports suggesting that CVE-2013-5787 may be actively exploited in the wild.
What components are involved in CVE-2013-5787?
The vulnerability is found in the Deployment component of Oracle Java SE.