CVE-2013-2443
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier, 6 Update 45 and earlier, and 5.0 Update 45 and earlier, and OpenJDK 7, allows remote attackers to affect confidentiality via unknown vectors related to Libraries, a different vulnerability than CVE-2013-2452 and CVE-2013-2455. NOTE: the previous information is from the June 2013 CPU. Oracle has not commented on claims from another vendor that this issue is due to an incorrect "checking order" within the AccessControlContext class.
- Affected products
- Centos, Hp-Ux, Java Platform, Oracle Jdk, Oracle Jre, Red Hat, Sun Jdk, Sun Jre
- Oracle Jre
- ≤ 1.7.0
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 4.6% (91th percentile)
- NVD status
- Modified
- Published
- 2013-06-18
No indexed exploits for CVE-2013-2443 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2013-2443 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.