CVE-2013-2465
Description
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier, 6 Update 45 and earlier, and 5.0 Update 45 and earlier, and OpenJDK 7, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D. NOTE: the previous information is from the June 2013 CPU. Oracle has not commented on claims from another vendor that this issue allows remote attackers to bypass the Java sandbox via vectors related to 'Incorrect image channel verification' in 2D.
EPSS (Exploit Prediction Scoring System)
EPSS (Exploit Prediction Scoring System)
Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.
EPSS Score Trend (Last 90 Days)
Protection Mechanism Failure
DraftCommon Consequences
Applicable Platforms
Java - 'storeImageArray()' Invalid Array Indexing (Metasploit)
Verified Metasploit Framework (MSF)Java - 'storeImageArray()' Invalid Array Indexing (Metasploit)
View Exploit Code →Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update12:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update20:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update27:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_1:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_10:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_12:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update7:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update30:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update33:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_14:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update22:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update29:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update15:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_15:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update31:*:*:*:*:*:*
Linux Enterprise Server by Suse
cpe:2.3:o:suse:linux_enterprise_server:11:sp3:*:*:*:vmware:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_4:*:*:*:*:*:*
Linux Enterprise Java by Suse
cpe:2.3:o:suse:linux_enterprise_java:11:sp2:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_7:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_13:*:*:*:*:*:*
Linux Enterprise Software Development Kit by Suse
cpe:2.3:o:suse:linux_enterprise_software_development_kit:11:sp3:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_6:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update17:*:*:*:*:*:*
Linux Enterprise Java by Suse
cpe:2.3:o:suse:linux_enterprise_java:10:sp4:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update14:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update26:*:*:*:*:*:*
Linux Enterprise Desktop by Suse
cpe:2.3:o:suse:linux_enterprise_desktop:10:sp4:*:*:-:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update3:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update13:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update7:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_17:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update31:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update21:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update9:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update15:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update3:*:*:*:*:*:*
Linux Enterprise Software Development Kit by Suse
cpe:2.3:o:suse:linux_enterprise_software_development_kit:11:sp2:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update41:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update9:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update45:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update6:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update34:*:*:*:*:*:*
Linux Enterprise Java by Suse
cpe:2.3:o:suse:linux_enterprise_java:11:sp3:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update24:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update2:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_9:*:*:*:*:*:*
Linux Enterprise Server by Suse
cpe:2.3:o:suse:linux_enterprise_server:11:sp2:*:*:*:-:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update19:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update43:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update32:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_3:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update33:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update11:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update25:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update29:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.5.0:update45:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.5.0:update40:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.5.0:update39:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update17:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update10:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update1:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_5:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update38:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_16:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_20:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update21:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update24:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update11:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.5.0:update38:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update28:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update18:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update5:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update5:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update37:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_19:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_11:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_18:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update2:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.5.0:update36:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update25:*:*:*:*:*:*
Linux Enterprise Server by Suse
cpe:2.3:o:suse:linux_enterprise_server:10:sp3:*:*:ltss:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update23:*:*:*:*:*:*
Linux Enterprise Server by Suse
cpe:2.3:o:suse:linux_enterprise_server:10:sp4:*:*:-:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.5.0:-:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update26:*:*:*:*:*:*
Linux Enterprise Server by Suse
cpe:2.3:o:suse:linux_enterprise_server:11:sp2:*:*:*:vmware:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update23:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:-:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update16:*:*:*:*:*:*
Linux Enterprise Server by Suse
cpe:2.3:o:suse:linux_enterprise_server:11:sp3:*:*:*:-:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:-:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update8:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update4:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update22:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.5.0:update41:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update27:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update39:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update10:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update4:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update13:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update1:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_21:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update6:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update35:*:*:*:*:*:*