CVE-2013-5775
Summary
| CVE | CVE-2013-5775 |
|---|---|
| State | PUBLISHED |
| Assigner | oracle |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2013-10-16 15:55:34 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | Unspecified vulnerability in the Java SE and JavaFX components in Oracle Java SE 7u40 and earlier and JavaFX 2.2.40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2013-5777. |
Risk And Classification
Primary CVSS: v2.0 7.5 from [email protected]
AV:N/AC:L/Au:N/C:P/I:P/A:P
Problem Types: NVD-CWE-noinfo | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:N/AC:L/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oracle | Javafx | 2.2 | All | All | All |
| Application | Oracle | Javafx | 2.2.21 | All | All | All |
| Application | Oracle | Javafx | 2.2.3 | All | All | All |
| Application | Oracle | Javafx | 2.2.4 | All | All | All |
| Application | Oracle | Javafx | 2.2.5 | All | All | All |
| Application | Oracle | Javafx | 2.2.7 | All | All | All |
| Application | Oracle | Javafx | All | All | All | All |
| Application | Oracle | Jdk | 1.7.0 | All | All | All |
| Application | Oracle | Jdk | 1.7.0 | update1 | All | All |
| Application | Oracle | Jdk | 1.7.0 | update10 | All | All |
| Application | Oracle | Jdk | 1.7.0 | update11 | All | All |
| Application | Oracle | Jdk | 1.7.0 | update13 | All | All |
| Application | Oracle | Jdk | 1.7.0 | update15 | All | All |
| Application | Oracle | Jdk | 1.7.0 | update17 | All | All |
| Application | Oracle | Jdk | 1.7.0 | update2 | All | All |
| Application | Oracle | Jdk | 1.7.0 | update21 | All | All |
| Application | Oracle | Jdk | 1.7.0 | update25 | All | All |
| Application | Oracle | Jdk | 1.7.0 | update3 | All | All |
| Application | Oracle | Jdk | 1.7.0 | update4 | All | All |
| Application | Oracle | Jdk | 1.7.0 | update5 | All | All |
| Application | Oracle | Jdk | 1.7.0 | update6 | All | All |
| Application | Oracle | Jdk | 1.7.0 | update7 | All | All |
| Application | Oracle | Jdk | 1.7.0 | update9 | All | All |
| Application | Oracle | Jdk | All | update40 | All | All |
| Application | Oracle | Jre | 1.7.0 | All | All | All |
| Application | Oracle | Jre | 1.7.0 | update1 | All | All |
| Application | Oracle | Jre | 1.7.0 | update10 | All | All |
| Application | Oracle | Jre | 1.7.0 | update11 | All | All |
| Application | Oracle | Jre | 1.7.0 | update13 | All | All |
| Application | Oracle | Jre | 1.7.0 | update15 | All | All |
| Application | Oracle | Jre | 1.7.0 | update17 | All | All |
| Application | Oracle | Jre | 1.7.0 | update2 | All | All |
| Application | Oracle | Jre | 1.7.0 | update21 | All | All |
| Application | Oracle | Jre | 1.7.0 | update25 | All | All |
| Application | Oracle | Jre | 1.7.0 | update3 | All | All |
| Application | Oracle | Jre | 1.7.0 | update4 | All | All |
| Application | Oracle | Jre | 1.7.0 | update5 | All | All |
| Application | Oracle | Jre | 1.7.0 | update6 | All | All |
| Application | Oracle | Jre | 1.7.0 | update7 | All | All |
| Application | Oracle | Jre | 1.7.0 | update9 | All | All |
| Application | Oracle | Jre | All | update40 | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Oracle Critical Patch Update - October 2013 | af854a3a-2127-422b-91ae-364da2661108 | www.oracle.com | Vendor Advisory |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | |
| '[security bulletin] HPSBUX02944 rev.1 - HP-UX Running Java7, Remote Unauthorized Access, Disclosure' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | |
| Red Hat Customer Portal | af854a3a-2127-422b-91ae-364da2661108 | rhn.redhat.com | |
| Oracle Java SE CVE-2013-5775 Remote Security Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.