You are here

CVE-2013-1569

Vincent (CVE) Danen's picture
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0 Update 41 and earlier; and OpenJDK 6 and 7; allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to "checking of [a] glyph table" in the International Components for Unicode (ICU) Layout Engine before 51.2.

Details Source

Mitre

Public Date

2013-04-16 00:00:00

Impact

Critical

Bugzilla

CVE-2013-1569 ICU: Layout Engine font layout and glyph table errors (JDK 2D, 8004994)

Bugzilla ID

952 711

CVSS Status

verified

Base Score

6.80

Base Metrics

AV:N/AC:M/Au:N/C:P/I:P/A:P

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 5 (java-1.7.0-openjdk) RHSA-2013:0752 2013-04-17
Red Hat Enterprise Linux Supplementary 5 (java-1.5.0-ibm) RHSA-2013:0855 2013-05-22
Red Hat Enterprise Linux 6 (java-1.6.0-openjdk) RHSA-2013:0770 2013-04-24
Red Hat Enterprise Linux 5 (java-1.6.0-openjdk) RHSA-2013:0770 2013-04-24
Red Hat Enterprise Linux Supplementary (v. 6) (java-1.7.0-ibm) RHSA-2013:0822 2013-05-14
Red Hat Satellite 5.5 (RHEL v.6) (java-1.6.0-ibm) RHSA-2013:1456 2013-10-23
Red Hat Enterprise Linux 6 (java-1.7.0-openjdk) RHSA-2013:0751 2013-04-17
Red Hat Satellite 5.4 (RHEL v.5) (java-1.6.0-ibm) RHSA-2013:1455 2013-10-23
Red Hat Satellite 5.4 (RHEL v.6) (java-1.6.0-ibm) RHSA-2013:1455 2013-10-23
Red Hat Enterprise Linux Supplementary 5 (java-1.6.0-ibm) RHSA-2013:0823 2013-05-14
Red Hat Enterprise Linux Supplementary 5 (java-1.7.0-ibm) RHSA-2013:0822 2013-05-14
Red Hat Satellite 5.5 (RHEL v.5) (java-1.6.0-ibm) RHSA-2013:1456 2013-10-23
Red Hat Enterprise Linux Supplementary 5 (java-1.6.0-sun) RHSA-2013:0758 2013-04-18
Red Hat Enterprise Linux Supplementary 5 (java-1.7.0-oracle) RHSA-2013:0757 2013-04-18
Red Hat Enterprise Linux Supplementary (v. 6) (java-1.7.0-oracle) RHSA-2013:0757 2013-04-18
Red Hat Enterprise Linux Supplementary (v. 6) (java-1.6.0-sun) RHSA-2013:0758 2013-04-18
Red Hat Enterprise Linux Supplementary (v. 6) (java-1.6.0-ibm) RHSA-2013:0823 2013-05-14
Red Hat Enterprise Linux Supplementary (v. 6) (java-1.5.0-ibm) RHSA-2013:0855 2013-05-22

Affected Packages State

Platform Package State
Red Hat Enterprise Linux 7 icu Will not fix
Red Hat Enterprise Linux 6 icu Will not fix
Red Hat Enterprise Linux 5 icu Will not fix
Red Hat Directory Server 8 icu Will not fix