CVE-2013-2566 - CVE House
Back to Database
Status published Unknown CVE-2013-2566

The RC4 algorithm, as used in the TLS protocol and...

Vulnerability Description

The RC4 algorithm, as used in the TLS protocol and SSL protocol, has many single-byte biases, which makes it easier for remote attackers to conduct plaintext-recovery attacks via statistical analysis of ciphertext in a large number of sessions that use the same plaintext.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2013-2566

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

communications application session controller, http server, integrated lights out manager firmware, sparc enterprise m3000 firmware, sparc enterprise m4000 firmware, sparc enterprise m5000 firmware, sparc enterprise m8000 firmware, sparc enterprise m9000 firmware, m10-1 firmware, m10-4 firmware, m10-4s firmware, ubuntu linux, firefox, seamonkey, thunderbird, thunderbird esr
Vulnerable Versions:
3.0.0, 11.1.1.7.0, 11.1.1.9.0, 12.1.3.0.0, 12.2.1.1.0, 12.2.1.2.0, 4.0.0, xcp, 12.04, 12.10, 13.04, 13.10, 0, 24.1.0

Timeline

Official Publish: March 14th, 2013
Last Modified: May 22nd, 2026
Added to House: July 19th, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.