CVE-2013-5906: Medium severity red hat enterprise linux desktop vulnerability
Oracle Java SE 5.0u71, 6u71 and 7u51 fixes an unspecified vulnerability in the Install component (CVE-2013-5906). Upstream has CVSSv2 scored this issue as: 5.1/AV:N/AC:H/Au:N/C:P/I:P/A:P
External Reference:
http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html#AppendixJAVA
Other sources
Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Install, a different vulnerability than CVE-2013-5905.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2013-5906?
CVE-2013-5906 is scored with a CVSSv2 severity of 5.1, indicating medium impact.
How do I fix CVE-2013-5906?
To address CVE-2013-5906, users should update their Oracle Java SE installations to the latest versions specified in the remediation information.
Which versions of Java are affected by CVE-2013-5906?
CVE-2013-5906 affects Oracle Java SE versions 5.0u71, 6u71, and 7u51.
What components are impacted by CVE-2013-5906?
CVE-2013-5906 affects an unspecified vulnerability in the Install component of Oracle Java.
Is there a workaround for CVE-2013-5906?
There are no known workarounds for CVE-2013-5906; the best approach is to apply the recommended updates.