Packet Storm Advisory 2013-0827-1 – Oracle Java ByteComponentRaster.verify()
Posted by deepcore on August 27, 2013 – 11:59 pm
The ByteComponentRaster.verify() method in Oracle Java versions prior to 7u25 is vulnerable to a memory corruption vulnerability that allows bypassing of “dataOffsets[]” boundary checks. This vulnerability allows for remote code execution. User interaction is required for this exploit in that the target must visit a malicious page or open a malicious file
Read more:
Packet Storm Advisory 2013-0827-1 – Oracle Java ByteComponentRaster.verify()
Post a reply
You must be logged in to post a comment.