cbcvebase.
CVE-2012-4420
published 2019-12-26

CVE-2012-4420: An information disclosure flaw was found in the way the Java Virtual Machine (JVM) implementation of Java SE 7 as provided by OpenJDK 7 incorrectly initialized…

high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
An information disclosure flaw was found in the way the Java Virtual Machine (JVM) implementation of Java SE 7 as provided by OpenJDK 7 incorrectly initialized integer arrays after memory allocation (in certain circumstances they had nonzero elements right after the allocation). A remote attacker could use this flaw to obtain potentially sensitive information.

Affected

2 ranges
VendorProductVersion rangeFixed in
java-1.7.0-openjdkjava-1.7.0-openjdk
oraclejdk