CVE-2012-1711
Advisory lineage Upstream: 0 Downstream: 7
Modified
Published: 16 Jun 2012, 21:00
Last modified:06 Aug 2024, 19:08
Vulnerability Summary
Overall Risk (default)
medium
30/100 CVSS Score
7.5 HIGH
v2.0 (nvd)
EPSS Score
0.86% LOW
1% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
16 Jun 2012, 21:00
Published
Vulnerability first disclosed
06 Aug 2024, 19:08
Last Modified
Vulnerability information updated
Description
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 update 32 and earlier, 5 update 35 and earlier, and 1.4.2_37 and earlier allows remote attackers to affect confidentiality, integrity, and availability, related to CORBA.
CVSS Metrics
- v2.0•HIGH•Score: 7.5AV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS Trends
Current EPSS score: 0.86%• Percentile: 75%
Affected Systems
- oracle•jdk
≤ 1.7.0 | ≤ 1.6.0
- oracle•jre
≤ 1.7.0 | ≤ 1.6.0
- sun•jdk
≤ 1.5.0 | ≤ 1.4.2_37
- sun•jre
≤ 1.5.0 | ≤ 1.4.2_37
References (8)
- http://security.gentoo.org/glsa/glsa-201406-32.xml
- http://rhn.redhat.com/errata/RHSA-2012-0734.html
- http://www.oracle.com/technetwork/topics/security/javacpujun2012-1515912.html
- http://mail.openjdk.java.net/pipermail/distro-pkg-dev/2012-June/019076.html
- http://marc.info/?l=bugtraq&m=134496371727681&w=2
- http://www.mandriva.com/security/advisories?name=MDVSA-2012:095
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15996
- http://www.securityfocus.com/bid/53949