-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
National Cyber Awareness System
US-CERT Current Activity
Updated Release of the February 2013 Oracle Java SE Critical Patch Update
Original release date: February 21, 2013
Last revised: --
Oracle has released an updated February 2013 Critical Patch Update for
Oracle Java SE to address a vulnerability. This vulnerability could
allow a remote unauthenticated attacker to execute arbitrary code on
vulnerable systems or to provide unauthorized disclosure of information.
The following versions of Oracle Java SE are affected:
* JDK and JRE 7 Update 13 and earlier
* JDK and JRE 6 Update 39 and earlier
* JDK and JRE 5.0 Update 39 and earlier
* SDK and JRE 1.4.2_41 and earlier
US-CERT encourages users and administrators to review the bulletin and
follow best-practice security policies to determine which updates should
be applied. Additional information regarding this vulnerability can be
found in Vulnerability Notes VU#636312.
Relevant URL(s):
<http://www.kb.cert.org/vuls/ id/636312#solution>
<http://www.oracle.com/ technetwork/topics/security/ javacpufeb2013update-1905892. html>
______________________________ ______________________________ ________
Produced by US-CERT, a government organization.
______________________________ ______________________________ ________
This product is provided subject to this Notification:
http://www.us-cert.gov/ privacy/notification.html
Privacy & Use policy:
http://www.us-cert.gov/ privacy/
This document can also be found at
http://www.us-cert.gov/ current/#updated_release_of_ the_february
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)
iQEVAwUBUSZFKndnhE8Qi3ZhAQKLKQ gAhlfYcQ8LTvDLdS4ZIBwtaMHTgfQb x0dB
/ZLCwstILduguu25k1SSGp+/ 3YqcnivuTZ/ IICgjEMTrUxW1JsOQGeBKIZVcba5H
gpKxbTawmieeO2dLw017gVmIcua60/ X9FU68a4AJiEkqOR997yq+ Pa4yX5AuoD1T
xUItEw22XSJ1+p+ kCfapvrctHLHTgWLwV0XRIBsXOa48H wOrZhwpcTC5wG3r9yMf
/ ZbKRXwI3tFvqwBa9I6xB3Y5YIonxKb QjGMQ/ 6RdCbpeCJlcVYYeSoJQvHdTZBK6
oaBx05B0QTkYN5JgWNjuuGvqAZ45ZI 2A+rIfgPVBefPTQDcjPGOqGQ==
=hgb5
-----END PGP SIGNATURE-----
Hash: SHA1
National Cyber Awareness System
US-CERT Current Activity
Updated Release of the February 2013 Oracle Java SE Critical Patch Update
Original release date: February 21, 2013
Last revised: --
Oracle has released an updated February 2013 Critical Patch Update for
Oracle Java SE to address a vulnerability. This vulnerability could
allow a remote unauthenticated attacker to execute arbitrary code on
vulnerable systems or to provide unauthorized disclosure of information.
The following versions of Oracle Java SE are affected:
* JDK and JRE 7 Update 13 and earlier
* JDK and JRE 6 Update 39 and earlier
* JDK and JRE 5.0 Update 39 and earlier
* SDK and JRE 1.4.2_41 and earlier
US-CERT encourages users and administrators to review the bulletin and
follow best-practice security policies to determine which updates should
be applied. Additional information regarding this vulnerability can be
found in Vulnerability Notes VU#636312.
Relevant URL(s):
<http://www.kb.cert.org/vuls/
<http://www.oracle.com/
______________________________
Produced by US-CERT, a government organization.
______________________________
This product is provided subject to this Notification:
http://www.us-cert.gov/
Privacy & Use policy:
http://www.us-cert.gov/
This document can also be found at
http://www.us-cert.gov/
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)
iQEVAwUBUSZFKndnhE8Qi3ZhAQKLKQ
/ZLCwstILduguu25k1SSGp+/
gpKxbTawmieeO2dLw017gVmIcua60/
xUItEw22XSJ1+p+
/
oaBx05B0QTkYN5JgWNjuuGvqAZ45ZI
=hgb5
-----END PGP SIGNATURE-----