Candidate: CVE-2013-2468 PublicDate: 2013-06-18 22:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-2468 http://www.oracle.com/technetwork/topics/security/javacpujun2013-1899847.html http://www.oracle.com/technetwork/topics/security/javacpujun2013-1899847.html http://blog.fuseyism.com/index.php/2013/06/19/imminent-icedtea-web-breakage/ Description: Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier and 6 Update 45 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-2442 and CVE-2013-2466. Ubuntu-Description: Notes: mdeslaur> in lucid+, NetX and the plugin moved to the icedtea-web package jdstrand> sun-java6 is not redistributable, no longer in the archive and no longer tracked jdstrand> sun-java5 is EOL upstream and no longer tracked jdstrand> as of 2013-06-19, upstream IcedTea updates are not available jdstrand> updates break the icedtea-web plugin and it will need this fix: http://mail.openjdk.java.net/pipermail/distro-pkg-dev/2013-June/023745.html jdstrand> Oracle java only Bugs: Priority: medium Discovered-by: Assigned-to: jdstrand CVSS: Patches_openjdk-6: upstream_openjdk-6: pending (6b27-1.12.6) lucid_openjdk-6: not-affected precise_openjdk-6: not-affected quantal_openjdk-6: not-affected raring_openjdk-6: not-affected devel_openjdk-6: not-affected Patches_openjdk-7: upstream_openjdk-7: pending (2.3.10) lucid_openjdk-7: DNE precise_openjdk-7: not-affected quantal_openjdk-7: not-affected raring_openjdk-7: not-affected devel_openjdk-7: not-affected Patches_openjdk-6b18: upstream_openjdk-6b18: needs-triage lucid_openjdk-6b18: ignored (reached end-of-life) precise_openjdk-6b18: DNE quantal_openjdk-6b18: DNE raring_openjdk-6b18: DNE devel_openjdk-6b18: DNE