CVE-2013-5888: Medium severity oracle java se 7 vulnerability
Oracle Java SE 6u71 and 7u51 fixes an unspecified vulnerability in the Deployment component (CVE-2013-5888). Upstream has CVSSv2 scored this issue as: 4.6/AV:L/AC:L/Au:N/C:P/I:P/A:P
External Reference:
http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html#AppendixJAVA
Other sources
Unspecified vulnerability in Oracle Java SE 6u65 and 7u45, when running with GNOME, allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2013-5888?
CVE-2013-5888 has a CVSSv2 score of 4.6, indicating a moderate severity level.
How do I fix CVE-2013-5888?
To fix CVE-2013-5888, upgrade to the appropriate patched version of Java as specified by your operating system vendor.
Which versions of Java are affected by CVE-2013-5888?
CVE-2013-5888 affects Oracle Java SE versions 6u71 and 7u51.
Is CVE-2013-5888 an unprivileged vulnerability?
Yes, CVE-2013-5888 allows exploitation without authentication, indicating it is an unprivileged vulnerability.
Are there specific remediation versions for CVE-2013-5888?
Yes, specific remediation versions include Java 1.6.0_75 and 1.7.0_51, depending on your Java distribution.