First published: Tue Oct 15 2013(Updated: )
A denial of service flaw was discovered in the com.sun.org.apache.xml.internal.security.utils.UnsyncByteArrayOutputStream class. A remote attacker could use this flaw to supply crafted XML that would lead to a denial of service.
Credit: secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/icedtea | <2.4.3 | 2.4.3 |
redhat/icedtea | <1.11.14 | 1.11.14 |
redhat/icedtea | <1.12.7 | 1.12.7 |
Oracle JRockit | <=r27.7.6 | |
Oracle JRockit | =r27.7.1 | |
Oracle JRockit | =r27.7.2 | |
Oracle JRockit | =r27.7.3 | |
Oracle JRockit | =r27.7.4 | |
Oracle JRockit | =r27.7.5 | |
Oracle JRE | <=1.7.0 | |
Oracle JRE | =1.7.0 | |
Oracle JRE | =1.7.0-update1 | |
Oracle JRE | =1.7.0-update10 | |
Oracle JRE | =1.7.0-update11 | |
Oracle JRE | =1.7.0-update13 | |
Oracle JRE | =1.7.0-update15 | |
Oracle JRE | =1.7.0-update17 | |
Oracle JRE | =1.7.0-update2 | |
Oracle JRE | =1.7.0-update21 | |
Oracle JRE | =1.7.0-update25 | |
Oracle JRE | =1.7.0-update3 | |
Oracle JRE | =1.7.0-update4 | |
Oracle JRE | =1.7.0-update5 | |
Oracle JRE | =1.7.0-update6 | |
Oracle JRE | =1.7.0-update7 | |
Oracle JRE | =1.7.0-update9 | |
Oracle JDK | <=1.6.0 | |
Oracle JDK | =1.6.0-update22 | |
Oracle JDK | =1.6.0-update23 | |
Oracle JDK | =1.6.0-update24 | |
Oracle JDK | =1.6.0-update25 | |
Oracle JDK | =1.6.0-update26 | |
Oracle JDK | =1.6.0-update27 | |
Oracle JDK | =1.6.0-update29 | |
Oracle JDK | =1.6.0-update30 | |
Oracle JDK | =1.6.0-update31 | |
Oracle JDK | =1.6.0-update32 | |
Oracle JDK | =1.6.0-update33 | |
Oracle JDK | =1.6.0-update34 | |
Oracle JDK | =1.6.0-update35 | |
Oracle JDK | =1.6.0-update37 | |
Oracle JDK | =1.6.0-update38 | |
Oracle JDK | =1.6.0-update39 | |
Oracle JDK | =1.6.0-update41 | |
Oracle JDK | =1.6.0-update43 | |
Oracle JDK | =1.6.0-update45 | |
Oracle JDK | =1.6.0-update51 | |
Sun JDK | =1.6.0 | |
Sun JDK | =1.6.0-update_10 | |
Sun JDK | =1.6.0-update_11 | |
Sun JDK | =1.6.0-update_12 | |
Sun JDK | =1.6.0-update_13 | |
Sun JDK | =1.6.0-update_14 | |
Sun JDK | =1.6.0-update_15 | |
Sun JDK | =1.6.0-update_16 | |
Sun JDK | =1.6.0-update_17 | |
Sun JDK | =1.6.0-update_18 | |
Sun JDK | =1.6.0-update_19 | |
Sun JDK | =1.6.0-update_20 | |
Sun JDK | =1.6.0-update_21 | |
Sun JDK | =1.6.0-update_3 | |
Sun JDK | =1.6.0-update_4 | |
Sun JDK | =1.6.0-update_5 | |
Sun JDK | =1.6.0-update_6 | |
Sun JDK | =1.6.0-update_7 | |
Sun JDK | =1.6.0-update1 | |
Sun JDK | =1.6.0-update1_b06 | |
Sun JDK | =1.6.0-update2 | |
Oracle JDK | <=1.7.0 | |
Oracle JDK | =1.7.0 | |
Oracle JDK | =1.7.0-update1 | |
Oracle JDK | =1.7.0-update10 | |
Oracle JDK | =1.7.0-update11 | |
Oracle JDK | =1.7.0-update13 | |
Oracle JDK | =1.7.0-update15 | |
Oracle JDK | =1.7.0-update17 | |
Oracle JDK | =1.7.0-update2 | |
Oracle JDK | =1.7.0-update21 | |
Oracle JDK | =1.7.0-update25 | |
Oracle JDK | =1.7.0-update3 | |
Oracle JDK | =1.7.0-update4 | |
Oracle JDK | =1.7.0-update5 | |
Oracle JDK | =1.7.0-update6 | |
Oracle JDK | =1.7.0-update7 | |
Oracle JDK | =1.7.0-update9 | |
Oracle JRockit | <=r28.2.8 | |
Oracle JRockit | =r28.0.0 | |
Oracle JRockit | =r28.0.1 | |
Oracle JRockit | =r28.0.2 | |
Oracle JRockit | =r28.1.0 | |
Oracle JRockit | =r28.1.1 | |
Oracle JRockit | =r28.1.3 | |
Oracle JRockit | =r28.1.4 | |
Oracle JRockit | =r28.1.5 | |
Oracle JRockit | =r28.2.2 | |
Oracle JRockit | =r28.2.3 | |
Oracle JRockit | =r28.2.4 | |
Oracle JRockit | =r28.2.5 | |
Oracle JRockit | =r28.2.6 | |
Oracle JRE | <=1.6.0 | |
Oracle JRE | =1.6.0-update22 | |
Oracle JRE | =1.6.0-update23 | |
Oracle JRE | =1.6.0-update24 | |
Oracle JRE | =1.6.0-update25 | |
Oracle JRE | =1.6.0-update26 | |
Oracle JRE | =1.6.0-update27 | |
Oracle JRE | =1.6.0-update29 | |
Oracle JRE | =1.6.0-update30 | |
Oracle JRE | =1.6.0-update31 | |
Oracle JRE | =1.6.0-update32 | |
Oracle JRE | =1.6.0-update33 | |
Oracle JRE | =1.6.0-update34 | |
Oracle JRE | =1.6.0-update35 | |
Oracle JRE | =1.6.0-update37 | |
Oracle JRE | =1.6.0-update38 | |
Oracle JRE | =1.6.0-update39 | |
Oracle JRE | =1.6.0-update41 | |
Oracle JRE | =1.6.0-update43 | |
Oracle JRE | =1.6.0-update45 | |
Oracle JRE | =1.6.0-update51 | |
Sun JRE | =1.6.0 | |
Sun JRE | =1.6.0-update_1 | |
Sun JRE | =1.6.0-update_10 | |
Sun JRE | =1.6.0-update_11 | |
Sun JRE | =1.6.0-update_12 | |
Sun JRE | =1.6.0-update_13 | |
Sun JRE | =1.6.0-update_14 | |
Sun JRE | =1.6.0-update_15 | |
Sun JRE | =1.6.0-update_16 | |
Sun JRE | =1.6.0-update_17 | |
Sun JRE | =1.6.0-update_18 | |
Sun JRE | =1.6.0-update_19 | |
Sun JRE | =1.6.0-update_2 | |
Sun JRE | =1.6.0-update_20 | |
Sun JRE | =1.6.0-update_21 | |
Sun JRE | =1.6.0-update_3 | |
Sun JRE | =1.6.0-update_4 | |
Sun JRE | =1.6.0-update_5 | |
Sun JRE | =1.6.0-update_6 | |
Sun JRE | =1.6.0-update_7 | |
Sun JRE | =1.6.0-update_9 | |
maven/org.apache.santuario:xmlsec | >=1.5.0<1.5.3 | 1.5.3 |
maven/org.apache.santuario:xmlsec | >=1.4.0<1.4.8 | 1.4.8 |
<=r27.7.6 | ||
=r27.7.1 | ||
=r27.7.2 | ||
=r27.7.3 | ||
=r27.7.4 | ||
=r27.7.5 | ||
<=1.7.0 | ||
=1.7.0 | ||
=1.7.0-update1 | ||
=1.7.0-update10 | ||
=1.7.0-update11 | ||
=1.7.0-update13 | ||
=1.7.0-update15 | ||
=1.7.0-update17 | ||
=1.7.0-update2 | ||
=1.7.0-update21 | ||
=1.7.0-update25 | ||
=1.7.0-update3 | ||
=1.7.0-update4 | ||
=1.7.0-update5 | ||
=1.7.0-update6 | ||
=1.7.0-update7 | ||
=1.7.0-update9 | ||
<=1.6.0 | ||
=1.6.0-update22 | ||
=1.6.0-update23 | ||
=1.6.0-update24 | ||
=1.6.0-update25 | ||
=1.6.0-update26 | ||
=1.6.0-update27 | ||
=1.6.0-update29 | ||
=1.6.0-update30 | ||
=1.6.0-update31 | ||
=1.6.0-update32 | ||
=1.6.0-update33 | ||
=1.6.0-update34 | ||
=1.6.0-update35 | ||
=1.6.0-update37 | ||
=1.6.0-update38 | ||
=1.6.0-update39 | ||
=1.6.0-update41 | ||
=1.6.0-update43 | ||
=1.6.0-update45 | ||
=1.6.0-update51 | ||
=1.6.0 | ||
=1.6.0-update_10 | ||
=1.6.0-update_11 | ||
=1.6.0-update_12 | ||
=1.6.0-update_13 | ||
=1.6.0-update_14 | ||
=1.6.0-update_15 | ||
=1.6.0-update_16 | ||
=1.6.0-update_17 | ||
=1.6.0-update_18 | ||
=1.6.0-update_19 | ||
=1.6.0-update_20 | ||
=1.6.0-update_21 | ||
=1.6.0-update_3 | ||
=1.6.0-update_4 | ||
=1.6.0-update_5 | ||
=1.6.0-update_6 | ||
=1.6.0-update_7 | ||
=1.6.0-update1 | ||
=1.6.0-update1_b06 | ||
=1.6.0-update2 | ||
<=1.7.0 | ||
=1.7.0 | ||
=1.7.0-update1 | ||
=1.7.0-update10 | ||
=1.7.0-update11 | ||
=1.7.0-update13 | ||
=1.7.0-update15 | ||
=1.7.0-update17 | ||
=1.7.0-update2 | ||
=1.7.0-update21 | ||
=1.7.0-update25 | ||
=1.7.0-update3 | ||
=1.7.0-update4 | ||
=1.7.0-update5 | ||
=1.7.0-update6 | ||
=1.7.0-update7 | ||
=1.7.0-update9 | ||
<=r28.2.8 | ||
=r28.0.0 | ||
=r28.0.1 | ||
=r28.0.2 | ||
=r28.1.0 | ||
=r28.1.1 | ||
=r28.1.3 | ||
=r28.1.4 | ||
=r28.1.5 | ||
=r28.2.2 | ||
=r28.2.3 | ||
=r28.2.4 | ||
=r28.2.5 | ||
=r28.2.6 | ||
<=1.6.0 | ||
=1.6.0-update22 | ||
=1.6.0-update23 | ||
=1.6.0-update24 | ||
=1.6.0-update25 | ||
=1.6.0-update26 | ||
=1.6.0-update27 | ||
=1.6.0-update29 | ||
=1.6.0-update30 | ||
=1.6.0-update31 | ||
=1.6.0-update32 | ||
=1.6.0-update33 | ||
=1.6.0-update34 | ||
=1.6.0-update35 | ||
=1.6.0-update37 | ||
=1.6.0-update38 | ||
=1.6.0-update39 | ||
=1.6.0-update41 | ||
=1.6.0-update43 | ||
=1.6.0-update45 | ||
=1.6.0-update51 | ||
=1.6.0 | ||
=1.6.0-update_1 | ||
=1.6.0-update_10 | ||
=1.6.0-update_11 | ||
=1.6.0-update_12 | ||
=1.6.0-update_13 | ||
=1.6.0-update_14 | ||
=1.6.0-update_15 | ||
=1.6.0-update_16 | ||
=1.6.0-update_17 | ||
=1.6.0-update_18 | ||
=1.6.0-update_19 | ||
=1.6.0-update_2 | ||
=1.6.0-update_20 | ||
=1.6.0-update_21 | ||
=1.6.0-update_3 | ||
=1.6.0-update_4 | ||
=1.6.0-update_5 | ||
=1.6.0-update_6 | ||
=1.6.0-update_7 | ||
=1.6.0-update_9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.