CVE-2013-5902: Medium severity oracle java se 7 vulnerability
Oracle Java SE 6u71 and 7u51 fixes an unspecified vulnerability in the Deployment component (CVE-2013-5902). Upstream has CVSSv2 scored this issue as: 5.1/AV:N/AC:H/Au:N/C:P/I:P/A:P
External Reference:
http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html#AppendixJAVA
Other sources
Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2014-0410, CVE-2014-0415, CVE-2014-0418, and CVE-2014-0424.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2013-5902?
CVE-2013-5902 has a CVSSv2 score of 5.1, indicating a medium severity vulnerability.
How do I fix CVE-2013-5902?
To fix CVE-2013-5902, update to the patched versions of Oracle Java SE, specifically version 1.6.0-update75 or 1.7.0-update51.
What components are affected by CVE-2013-5902?
CVE-2013-5902 affects the Deployment component in Oracle Java SE versions 6u71 and 7u51.
What are the recommended versions to mitigate CVE-2013-5902?
The recommended versions to mitigate CVE-2013-5902 are 1.6.0-update75 and 1.7.0-update51 and above.
Is there a workaround for CVE-2013-5902?
There are no specific workarounds mentioned for CVE-2013-5902 aside from applying the appropriate updates.