CVE-2012-1682

Aliases:CGA-29j5-xpv9-8ggqCGA-3g8h-r72h-pccpCGA-4qvj-g6pv-vqm6CGA-58gv-42c7-fjr6CGA-58wj-gfv8-hj29CGA-5j8c-q92f-8vp3CGA-5w4r-c6fm-5vvmCGA-6gx6-4vjg-7873CGA-6r33-r7mr-2pxpCGA-7xqr-vp38-244cCGA-8jh2-f53c-c8rcCGA-953c-r2jm-97crCGA-9j9f-x9hf-225cCGA-ccq5-p7g3-3w74CGA-ch64-qq7x-23f3CGA-cvx2-f7pg-3pqhCGA-ffv5-9fq9-cvg5CGA-g46h-54g9-vm2hCGA-g5hv-wcjf-85h4CGA-jhh9-wjqg-f8w5CGA-m85h-2r5w-pwwvCGA-mgpf-w4wg-xgr8CGA-mrxw-f5xx-x6q7CGA-mxj8-65gw-p7v2CGA-p8rm-792q-98m8CGA-qc75-j37v-qf78CGA-qvjr-gmfm-xw2qCGA-r7cr-r72j-mpfmCGA-v4fm-gvm6-79gqCGA-vf87-pxff-34vcCGA-w855-m56f-96gjCGA-wm9j-xxf5-x462
Advisory lineage Upstream: 0 Downstream: 9
Modified
Published: 30 Aug 2012, 23:00
Last modified:06 Aug 2024, 19:08

Vulnerability Summary

Overall Risk (default)
high
70/100
CVSS Score
10 HIGH
v2.0 (nvd)
EPSS Score
5.4% LOW
5% probability +2.47%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

30 Aug 2012, 23:00
Published
Vulnerability first disclosed
06 Aug 2024, 19:08
Last Modified
Vulnerability information updated

Description

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 6 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Beans, a different vulnerability than CVE-2012-3136. NOTE: Oracle has not commented on claims from a downstream vendor that this issue is related to "XMLDecoder security issue via ClassFinder."

CVSS Metrics

  • v2.0HIGHScore: 10AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS Trends

Current EPSS score: 5.40% Percentile: 92%

Affected Systems

  • chainguardopenjdk-11-openj9-default-policy

    < 0.53.0-r0

  • chainguardopenjdk-17-openj9-default-policy

    < 0.53.0-r0

  • chainguardopenjdk-21-openj9-default-policy

    < 0.48.0-r2

  • chainguardopenjdk-25-openj9

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-jmods

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-jre

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-jmods

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-jre

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-dbg

    < 0.53.0-r1

  • oraclejdk

    ≤ 1.7.0 | 1.7.0 | 1.7.0:update1 | 1.7.0:update2 | 1.7.0:update3 | 1.7.0:update4 | 1.7.0:update5

  • oraclejre

    ≤ 1.7.0 | 1.7.0 | 1.7.0:update1 | 1.7.0:update2 | 1.7.0:update3 | 1.7.0:update4 | 1.7.0:update5

References (13)