Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier, and OpenJDK 7, allows remote attackers to affect confidentiality and integrity via unknown vectors related to Libraries. NOTE: the previous information is from the June 2013 CPU. Oracle has not commented on claims from another vendor that this issue allows remote attackers to bypass the Java sandbox via "an error related to method handles."
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2722-1 | openjdk-7 security update |
Ubuntu USN |
USN-1907-1 | OpenJDK 7 vulnerabilities |
Ubuntu USN |
USN-1908-1 | OpenJDK 6 vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2024-08-06T15:36:46.546Z
Reserved: 2013-03-05T00:00:00
Link: CVE-2013-2458
No data.
Status : Deferred
Published: 2013-06-18T22:55:02.673
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-2458
OpenCVE Enrichment
No data.
Debian DSA
Ubuntu USN