Oracle Java SE是美国甲骨文(Oracle)公司的一套标准版Java平台,用于开发和部署桌面、服务器以及嵌入设备和实时环境中的Java应用程序。 Oracle Java SE 7 Update 15和较早版本,6 Update 41和较早版本,5.0 Update 40和较早版本中的2D组件中存在漏洞。通过触发在JVM中读取或写入任意内存的向量,远程攻击者利用该漏洞执行任意代码或导致拒绝服务(崩溃)。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2013-0910 | Google Chrome 访问绕过漏洞 | |
| CVE-2013-0809 | Oracle Java SE 2D组件未明安全漏洞 | |
| CVE-2013-1775 | Todd Miller Sudo 本地验证绕过漏洞 | |
| CVE-2013-0292 | dbus-glib 本地权限提升漏洞 | |
| CVE-2013-0288 | nss-pam-ldapd 缓冲区溢出漏洞 | |
| CVE-2013-0198 | Dnsmasq 输入验证错误漏洞 | |
| CVE-2012-3411 | Dnsmasq 远程拒绝服务漏洞 | |
| CVE-2011-4355 | GNU gdb 权限许可和访问控制问题漏洞 | |
| CVE-2013-0911 | Google Chrome 目录遍历漏洞 | |
| CVE-2013-0902 | Google Chrome 框架加载器安全漏洞 | |
| CVE-2013-0909 | Google Chrome XSS Auditor敏感信息漏洞 | |
| CVE-2013-0908 | Google Chrome 安全漏洞 | |
| CVE-2013-0907 | Google Chrome 竞争条件漏洞 | |
| CVE-2013-0906 | Google Chrome IndexedDB实现拒绝服务漏洞 | |
| CVE-2013-0905 | Google Chrome 释放后重用漏洞 | |
| CVE-2013-0904 | Google Chrome Web Audio实现拒绝服务漏洞 | |
| CVE-2013-0903 | Google Chrome 释放后重用漏洞 |
No comments yet