CVE
- Id
- 60376
- CVE No.
- CVE-2013-0429
- Status
- Candidate
- Description
- Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11, 6 through Update 38, and 5.0 through Update 38, and OpenJDK 6 and 7, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA. NOTE: the previous information is from the February 2013 CPU. Oracle has not commented on claims from another vendor that this issue involves the creation of a single PresentationManager that is shared across multiple thread groups, which allows remote attackers to bypass Java sandbox restrictions.
- Phase
- Assigned (20121207)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
609185 | 60376 | CVE-2013-0429 | CONFIRM:http://www.oracle.com/technetwork/topics/security/javacpufeb2013-1841061.html | View |
609186 | 60376 | CVE-2013-0429 | CONFIRM:http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=907460 | View |
609187 | 60376 | CVE-2013-0429 | CONFIRM:http://icedtea.classpath.org/hg/release/icedtea6-1.11/file/icedtea6-1.11.6/NEWS | View |
609188 | 60376 | CVE-2013-0429 | CONFIRM:http://icedtea.classpath.org/hg/release/icedtea7-forest-2.3/corba/rev/c1ed8145c1b8 | View |
609189 | 60376 | CVE-2013-0429 | CONFIRM:https://wiki.mageia.org/en/Support/Advisories/MGASA-2013-0056 | View |
609190 | 60376 | CVE-2013-0429 | GENTOO:GLSA-201406-32 | View |
609191 | 60376 | CVE-2013-0429 | URL:http://security.gentoo.org/glsa/glsa-201406-32.xml | View |
609192 | 60376 | CVE-2013-0429 | HP:HPSBUX02864 | View |
609193 | 60376 | CVE-2013-0429 | URL:http://marc.info/?l=bugtraq&m=136570436423916&w=2 | View |
609194 | 60376 | CVE-2013-0429 | HP:SSRT101156 | View |
609195 | 60376 | CVE-2013-0429 | URL:http://marc.info/?l=bugtraq&m=136570436423916&w=2 | View |
609196 | 60376 | CVE-2013-0429 | HP:HPSBMU02874 | View |
609197 | 60376 | CVE-2013-0429 | URL:http://marc.info/?l=bugtraq&m=136733161405818&w=2 | View |
609198 | 60376 | CVE-2013-0429 | HP:HPSBUX02857 | View |
609199 | 60376 | CVE-2013-0429 | URL:http://marc.info/?l=bugtraq&m=136439120408139&w=2 | View |
609200 | 60376 | CVE-2013-0429 | HP:SSRT101103 | View |
609201 | 60376 | CVE-2013-0429 | URL:http://marc.info/?l=bugtraq&m=136439120408139&w=2 | View |
609202 | 60376 | CVE-2013-0429 | HP:SSRT101184 | View |
609203 | 60376 | CVE-2013-0429 | URL:http://marc.info/?l=bugtraq&m=136733161405818&w=2 | View |
609204 | 60376 | CVE-2013-0429 | MANDRIVA:MDVSA-2013:095 | View |
609205 | 60376 | CVE-2013-0429 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2013:095 | View |
609206 | 60376 | CVE-2013-0429 | REDHAT:RHSA-2013:0236 | View |
609207 | 60376 | CVE-2013-0429 | URL:http://rhn.redhat.com/errata/RHSA-2013-0236.html | View |
609208 | 60376 | CVE-2013-0429 | REDHAT:RHSA-2013:0237 | View |
609209 | 60376 | CVE-2013-0429 | URL:http://rhn.redhat.com/errata/RHSA-2013-0237.html | View |
609210 | 60376 | CVE-2013-0429 | REDHAT:RHSA-2013:0245 | View |
609211 | 60376 | CVE-2013-0429 | URL:http://rhn.redhat.com/errata/RHSA-2013-0245.html | View |
609212 | 60376 | CVE-2013-0429 | REDHAT:RHSA-2013:0246 | View |
609213 | 60376 | CVE-2013-0429 | URL:http://rhn.redhat.com/errata/RHSA-2013-0246.html | View |
609214 | 60376 | CVE-2013-0429 | REDHAT:RHSA-2013:0247 | View |
609215 | 60376 | CVE-2013-0429 | URL:http://rhn.redhat.com/errata/RHSA-2013-0247.html | View |
609216 | 60376 | CVE-2013-0429 | SUSE:openSUSE-SU-2013:0312 | View |
609217 | 60376 | CVE-2013-0429 | URL:http://lists.opensuse.org/opensuse-security-announce/2013-02/msg00014.html | View |
609218 | 60376 | CVE-2013-0429 | SUSE:openSUSE-SU-2013:0377 | View |
609219 | 60376 | CVE-2013-0429 | URL:http://lists.opensuse.org/opensuse-security-announce/2013-03/msg00001.html | View |
609220 | 60376 | CVE-2013-0429 | CERT:TA13-032A | View |
609221 | 60376 | CVE-2013-0429 | URL:http://www.us-cert.gov/cas/techalerts/TA13-032A.html | View |
609222 | 60376 | CVE-2013-0429 | CERT-VN:VU#858729 | View |
609223 | 60376 | CVE-2013-0429 | URL:http://www.kb.cert.org/vuls/id/858729 | View |
609224 | 60376 | CVE-2013-0429 | OVAL:oval:org.mitre.oval:def:16649 | View |
609225 | 60376 | CVE-2013-0429 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:16649 | View |
609226 | 60376 | CVE-2013-0429 | OVAL:oval:org.mitre.oval:def:19300 | View |
609227 | 60376 | CVE-2013-0429 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:19300 | View |
609228 | 60376 | CVE-2013-0429 | OVAL:oval:org.mitre.oval:def:19342 | View |
609229 | 60376 | CVE-2013-0429 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:19342 | View |
609230 | 60376 | CVE-2013-0429 | OVAL:oval:org.mitre.oval:def:19457 | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
19826 | JVNDB-2013-001401 | Oracle Java SE の Java Runtime Environment における JAXP の処理に関する脆弱性 | Oracle Java SE の Java Runtime Environment (JRE) には、JAXP に関する処理に不備があるため、機密性に影響のある脆弱性が存在します。 | CVE-2013-0434 | 60376 | 5 | http://jvndb.jvn.jp/ja/contents/2013/JVNDB-2013-001401.html | View |