CVE-2013-6493
EPSS 0.06%Published: 3/3/2014Modified: 4/28/2026
Also known as:DEBIAN-CVE-2013-6493
Description
The LiveConnect implementation in plugin/icedteanp/IcedTeaNPPlugin.cc in IcedTea-Web before 1.4.2 allows local users to read the messages between a Java applet and a web browser by pre-creating a temporary socket file with a predictable name in /tmp.
Affected packages (1)
- Debian/icedtea-webfrom 0, < 1.4.2-1