Oval Definition:oval:com.ubuntu.precise:def:20132415000
Revision Date:2013-04-17Version:1
Title:CVE-2013-2415 on Ubuntu 12.04 LTS (precise) - medium.
Description:Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 6 and 7, allows local users to affect confidentiality via vectors related to JAX-WS. NOTE: the previous information is from the April 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to "processing of MTOM attachments" and the creation of temporary files with weak permissions.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2013-2415
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND Package Information
  • NOT While related to the CVE in some way, the 'icedtea-web' package in precise is not affected.
  • OR The 'openjdk-6' package in precise was vulnerable but has been fixed (note: '6b27-1.12.5-0ubuntu0.12.04.1').
  • OR The 'openjdk-7' package in precise was vulnerable but has been fixed (note: '7u21-2.3.9-0ubuntu0.12.04.1').
  • BACK