← Back

CVE-2013-4002

nvd nist
Published: Jul 23, 2013Modified: Apr 29, 2026

JSON object

Loading...
7.1
Vector
AV:N/AC:M/Au:N/C:N/I:N/A:C
Exploitability: 8.6 / Impact: 6.9
Source: NVD

Description

XMLscanner.java in Apache Xerces2 Java Parser before 2.12.0, as used in the Java Runtime Environment (JRE) in IBM Java 5.0 before 5.0 SR16-FP3, 6 before 6 SR14, 6.0.1 before 6.0.1 SR6, and 7 before 7 SR5 as well as Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, JRockit R28.2.8 and earlier, JRockit R27.7.6 and earlier, Java SE Embedded 7u40 and earlier, and possibly other products allows remote attackers to cause a denial of service via vectors related to XML attribute names.

Affected (90)

Show all products
5 products
Java
Sterling B2b Integrator
Host On Demand
Sterling File Gateway
3 products
Jdk
Jre
Jrockit
1 product
Opensuse
4 products
Linux Enterprise Desktop
Linux Enterprise Java
Linux Enterprise Sdk
Linux Enterprise Server
1 product
Ubuntu Linux
1 product
Xerces2 Java
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 5.0.0.0
Version 5.0.11.0
Version 5.0.11.1
Version 5.0.11.2
Version 5.0.12.0
Version 5.0.12.1
Version 5.0.12.2
Version 5.0.12.3
Version 5.0.12.4
Version 5.0.12.5
Version 5.0.13.0
Version 5.0.14.0
Version 5.0.15.0
Version 5.0.16.0
Version 5.0.16.1
Version 5.0.16.2
Configuration B
20 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 6.0.0.0
Version 6.0.1.0
Version 6.0.10.0
Version 6.0.10.1
Version 6.0.11.0
Version 6.0.12.0
Version 6.0.13.0
Version 6.0.13.1
Version 6.0.13.2
Version 6.0.2.0
Version 6.0.3.0
Version 6.0.4.0
Version 6.0.5.0
Version 6.0.6.0
Version 6.0.7.0
Version 6.0.8.0
Version 6.0.8.1
Version 6.0.9.0
Version 6.0.9.1
Version 6.0.9.2
Configuration C
7 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 7.0.0.0
Version 7.0.1.0
Version 7.0.2.0
Version 7.0.3.0
Version 7.0.4.0
Version 7.0.4.1
Version 7.0.4.2
Configuration D
8 vulnerable
Vulnerable SoftwareAffected Versions
Oracle
Version 1.5.0 update51
Version 1.6.0 update60
Version 1.7.0 update40
Oracle
Version 1.5.0 update51
Version 1.6.0 update60
Version 1.7.0 update40
Oracle
From r27.7.0 to r27.7.6
From r28.0.0 to r28.2.8
Configuration E
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 5.2.4
Configuration F
11 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 11.0.1
Version 11.0.2
Version 11.0.3
Version 11.0.4
Version 11.0.5.1
Version 11.0.5
Version 11.0.6.1
Version 11.0.6
Version 11.0.7
Version 11.0.8
Version 11.0
Configuration G
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 7.2.2
Configuration H
4 vulnerable · 6 platform
Vulnerable SoftwareAffected Versions
Ibm
Version 5.1
Version 5.2
Ibm
Version 2.1
Version 2.2
Running on/withPlatform Versions
Hp
Hp Ux
All versions
Ibm
Aix
All versions
Ibm
I
All versions
Linux
Linux Kernel
All versions
Microsoft
Windows
All versions
Oracle
Solaris
All versions
Configuration I
16 vulnerable
Vulnerable SoftwareAffected Versions
Opensuse
Version 12.2
Version 12.3
Suse
Version 10 sp4
Version 11 sp3
Suse
Version 10 sp4
Version 11 sp2
Version 11 sp3
Suse
Version 11 sp2
Version 11 sp3
Suse
Version 10 sp3
Version 10 sp4
Version 11 sp2
Version 11 sp2
Version 11 sp3
Version 11 sp3
Version 9
Configuration J
5 vulnerable
Vulnerable SoftwareAffected Versions
Canonical
Version 10.04
Version 12.04
Version 12.10
Version 13.04
Version 13.10
Configuration K
1 vulnerable
Vulnerable SoftwareAffected Versions
From 2.4.0 to 2.12.0

References (98)

Source: psirt@us.ibm.com
Third Party Advisory
Source: psirt@us.ibm.com
Issue TrackingMailing ListThird Party Advisory
Source: psirt@us.ibm.com
Issue TrackingMailing ListThird Party Advisory
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Broken Link
Source: psirt@us.ibm.com
Third Party Advisory
Source: psirt@us.ibm.com
Third Party Advisory
Source: psirt@us.ibm.com
Third Party Advisory
Source: psirt@us.ibm.com
Vendor Advisory
Source: psirt@us.ibm.com
Vendor Advisory
Source: psirt@us.ibm.com
Vendor Advisory
Source: psirt@us.ibm.com
Vendor Advisory
Source: psirt@us.ibm.com
Third Party AdvisoryVDB Entry
Source: psirt@us.ibm.com
Third Party Advisory
Source: psirt@us.ibm.com
Third Party Advisory
Source: psirt@us.ibm.com
Third Party Advisory
Source: psirt@us.ibm.com
VDB EntryVendor Advisory
Source: psirt@us.ibm.com
Issue TrackingVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkMailing List
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingMailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingMailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
VDB EntryVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.