Candidate: CVE-2013-2432 PublicDate: 2013-04-17 18:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-2432 http://www.oracle.com/technetwork/topics/security/javacpuapr2013-1928497.html Description: Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, 5.0 Update 41 and earlier, and JavaFX 2.2.7 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D, a different vulnerability than CVE-2013-2394 and CVE-2013-1491. Ubuntu-Description: Notes: mdeslaur> in lucid+, NetX and the plugin moved to the icedtea-web package jdstrand> sun-java6 is not redistributable, no longer in the archive and no longer tracked jdstrand> sun-java5 is EOL upstream and no longer tracked jdstrand> Oracle java only Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_openjdk-6: upstream_openjdk-6: released (6u45) hardy_openjdk-6: ignored (reached end-of-life) lucid_openjdk-6: not-affected oneiric_openjdk-6: not-affected precise_openjdk-6: not-affected quantal_openjdk-6: not-affected devel_openjdk-6: not-affected Patches_openjdk-7: upstream_openjdk-7: released (7u21) hardy_openjdk-7: DNE lucid_openjdk-7: DNE oneiric_openjdk-7: not-affected precise_openjdk-7: not-affected quantal_openjdk-7: not-affected devel_openjdk-7: not-affected Patches_openjdk-6b18: upstream_openjdk-6b18: needs-triage hardy_openjdk-6b18: DNE lucid_openjdk-6b18: ignored (reached end-of-life) oneiric_openjdk-6b18: ignored (superseded by openjdk-6) precise_openjdk-6b18: DNE quantal_openjdk-6b18: DNE devel_openjdk-6b18: DNE Patches_icedtea-web: upstream_icedtea-web: not-affected hardy_icedtea-web: DNE lucid_icedtea-web: not-affected oneiric_icedtea-web: not-affected precise_icedtea-web: not-affected quantal_icedtea-web: not-affected devel_icedtea-web: not-affected