CVE-2012-1718
Aliases:CGA-2jch-q24c-j3r8CGA-3355-whp6-37xjCGA-3875-8r3w-jgw6CGA-47c4-3fgg-h4cqCGA-4mgh-jgwj-fw5hCGA-4r8g-2vc8-fc9hCGA-5r7j-2j6f-xjfxCGA-6r79-cw2c-g22wCGA-7hj7-88r5-rjqwCGA-9qrr-mgrq-76xgCGA-9vgg-xqr6-v2h5CGA-chw6-p3hq-977rCGA-cpgw-hp3m-c497CGA-gmpf-rrmj-cc2fCGA-h944-r85j-62wvCGA-hhxm-9gcp-562qCGA-jp85-qwr4-v373CGA-jwph-8jmc-44xqCGA-m2mw-2958-2m5xCGA-mchr-pjqj-xp5hCGA-mgp4-5577-m7fwCGA-p77c-j465-g4p3CGA-ppvv-rqc2-37j8CGA-pvc8-p5ph-wr8xCGA-q243-p9rq-c82pCGA-r5j2-c5p7-7v8xCGA-rjpv-hfrw-9w6qCGA-w8mc-97c7-2hrqCGA-whff-wff8-p77vCGA-wjpj-2r3m-rrwqCGA-wq97-r582-f2jpCGA-xrj4-r5m8-cv5c
Advisory lineage Upstream: 0 Downstream: 14
Modified
Published: 16 Jun 2012, 21:00
Last modified:06 Aug 2024, 19:08
Vulnerability Summary
Overall Risk (default)
low
21/100 CVSS Score
5 MEDIUM
v2.0 (nvd)
EPSS Score
4.26% LOW
4% probability -0.88%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
16 Jun 2012, 21:00
Published
Vulnerability first disclosed
06 Aug 2024, 19:08
Last Modified
Vulnerability information updated
Description
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 update 32 and earlier, 5 update 35 and earlier, and 1.4.2_37 and earlier allows remote attackers to affect availability via unknown vectors related to Security.
CVSS Metrics
- v2.0•MEDIUM•Score: 5AV:N/AC:L/Au:N/C:N/I:N/A:P
EPSS Trends
Current EPSS score: 4.26%• Percentile: 91%
Affected Systems
- chainguard•openjdk-11-openj9-default-policy
< 0.53.0-r0
- chainguard•openjdk-17-openj9-default-policy
< 0.53.0-r0
- chainguard•openjdk-21-openj9-default-policy
< 0.48.0-r2
- chainguard•openjdk-25-openj9
< 0.59.0-r1
- chainguard•openjdk-25-openj9-dbg
< 0.59.0-r1
- chainguard•openjdk-25-openj9-default-jdk
< 0.59.0-r1
- chainguard•openjdk-25-openj9-default-jvm
< 0.59.0-r1
- chainguard•openjdk-25-openj9-jmods
< 0.59.0-r1
- chainguard•openjdk-25-openj9-jre
< 0.59.0-r1
- chainguard•openjdk-26-openj9
< 0.59.0-r1
- chainguard•openjdk-26-openj9-dbg
< 0.59.0-r1
- chainguard•openjdk-26-openj9-default-jdk
< 0.59.0-r1
- chainguard•openjdk-26-openj9-default-jvm
< 0.59.0-r1
- chainguard•openjdk-26-openj9-jmods
< 0.59.0-r1
- chainguard•openjdk-26-openj9-jre
< 0.59.0-r1
- chainguard•openjdk-8-openj9-dbg
< 0.53.0-r1
- oracle•jdk
≤ 1.7.0 | ≤ 1.6.0
- oracle•jre
≤ 1.7.0 | ≤ 1.6.0
- sun•jdk
≤ 1.5.0 | ≤ 1.4.2_37
- sun•jre
≤ 1.5.0 | ≤ 1.4.2_37
References (23)
- http://lists.opensuse.org/opensuse-security-announce/2012-09/msg00035.html
- http://security.gentoo.org/glsa/glsa-201406-32.xml
- http://lists.opensuse.org/opensuse-security-announce/2012-09/msg00020.html
- http://lists.opensuse.org/opensuse-security-announce/2012-09/msg00032.html
- http://rhn.redhat.com/errata/RHSA-2012-0734.html
- http://www.oracle.com/technetwork/topics/security/javacpujun2012-1515912.html
- http://rhn.redhat.com/errata/RHSA-2012-1243.html
- http://mail.openjdk.java.net/pipermail/distro-pkg-dev/2012-June/019076.html
- http://secunia.com/advisories/50659
- http://marc.info/?l=bugtraq&m=134496371727681&w=2
- http://lists.opensuse.org/opensuse-security-announce/2012-09/msg00028.html
- http://rhn.redhat.com/errata/RHSA-2013-1455.html
- http://www.mandriva.com/security/advisories?name=MDVSA-2012:095
- http://rhn.redhat.com/errata/RHSA-2012-1467.html
- http://www.oracle.com/technetwork/topics/security/cpujul2012-392727.html
- http://www-01.ibm.com/support/docview.wss?uid=swg21620575
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15923
- http://www.securityfocus.com/bid/53951
- http://rhn.redhat.com/errata/RHSA-2013-1456.html
- http://www.ibm.com/support/docview.wss?uid=swg21615246
- http://secunia.com/advisories/51326
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150
- http://secunia.com/advisories/51080