CVE-2012-1713Oracle Javafx vulnerability

7 documents6 sources
Severity
10.0CRITICALNVD
EPSS
6.4%
top 8.92%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 16
Latest updateMay 14

Description

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 update 32 and earlier, 5 update 35 and earlier, 1.4.2_37 and earlier, and JavaFX 2.1 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages5 packages

NVDoracle/javafx2.1
NVDoracle/jdk1.7.0+1
NVDoracle/jre1.7.0+1
NVDsun/jdk1.5.0+1
NVDsun/jre1.5.0+1

🔴Vulnerability Details

2
GHSA
GHSA-j7wm-898c-h674: Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 update 32 and earlier, 5 update2022-05-14
CVEList
CVE-2012-1713: Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 update 32 and earlier, 5 update2012-06-16

📋Vendor Advisories

2
Ubuntu
OpenJDK 6 vulnerabilities2012-07-13
Red Hat
OpenJDK: fontmanager layout lookup code memory corruption (2D, 7143617)2012-06-12

💬Community

2
Bugzilla
CVE-2013-5907 ICU: Layout Engine LookupProcessor insufficient input checks (JDK 2D, 8025034)2014-01-14
Bugzilla
CVE-2012-1713 OpenJDK: fontmanager layout lookup code memory corruption (2D, 7143617)2012-06-06
CVE-2012-1713 — Oracle Javafx vulnerability | cvebase