~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2013-5878

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
PublicDateAtUSN: 2014-01-15
2
 
Candidate: CVE-2013-5878
3
 
PublicDate: 2014-01-15
4
 
References:
5
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-5878
6
 
 https://rhn.redhat.com/errata/RHSA-2014-0026.html
7
 
 http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html
8
 
 https://usn.ubuntu.com/usn/usn-2089-1
9
 
 https://usn.ubuntu.com/usn/usn-2124-1
10
 
Description:
11
 
 Unspecified vulnerability in Oracle Java SE 6u65 and 7u45, Java SE Embedded
12
 
 7u45, and OpenJDK 7 allows remote attackers to affect confidentiality,
13
 
 integrity, and availability via unknown vectors related to Security.  NOTE:
14
 
 the previous information is from the January 2014 CPU.  Oracle has not
15
 
 commented on third-party claims that the Security component does not
16
 
 properly handle null XML namespace (xmlns) attributes during XML document
17
 
 canonicalization, which allows attackers to escape the sandbox.
18
 
Ubuntu-Description:
19
 
Notes:
20
 
 mdeslaur> in lucid+, NetX and the plugin moved to the icedtea-web package
21
 
 jdstrand> sun-java6 is not redistributable, no longer in the archive and
22
 
  no longer tracked
23
 
 jdstrand> sun-java5 is EOL upstream and no longer tracked
24
 
Bugs:
25
 
Priority: low
26
 
Discovered-by:
27
 
Assigned-to: jdstrand
28
 
 
29
 
Patches_openjdk-6:
30
 
upstream_openjdk-6: needs-triage
31
 
lucid_openjdk-6: released (6b30-1.13.1-1ubuntu2~0.10.04.1)
32
 
precise_openjdk-6: released (6b30-1.13.1-1ubuntu2~0.12.04.1)
33
 
quantal_openjdk-6: released (6b30-1.13.1-1ubuntu2~0.12.10.1)
34
 
raring_openjdk-6: deferred (2014-01-15)
35
 
saucy_openjdk-6: released (6b30-1.13.1-1ubuntu2~0.13.10.1)
36
 
devel_openjdk-6: not-affected (6b30-1.13.1-1ubuntu1)
37
 
 
38
 
Patches_openjdk-7:
39
 
upstream_openjdk-7: released (7u51-2.4.4-1)
40
 
lucid_openjdk-7: DNE
41
 
precise_openjdk-7: released (7u51-2.4.4-0ubuntu0.12.04.2)
42
 
quantal_openjdk-7: released (7u51-2.4.4-0ubuntu0.12.10.2)
43
 
raring_openjdk-7: released (7u51-2.4.4-0ubuntu0.13.04.2)
44
 
saucy_openjdk-7: released (7u51-2.4.4-0ubuntu0.13.10.1)
45
 
devel_openjdk-7: not-affected (7u51-2.4.4-1ubuntu1)