Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-3174

Опубликовано: 13 янв. 2013
Источник: redhat
CVSS2: 6.8
EPSS Низкий

Описание

Unspecified vulnerability in Oracle Java 7 before Update 11 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2013-0422. NOTE: some parties have mapped CVE-2012-3174 to an issue involving recursive use of the Reflection API, but that issue is already covered as part of CVE-2013-0422. This identifier is for a different vulnerability whose details are not public as of 20130114.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5java-1.5.0-ibmNot affected
Red Hat Enterprise Linux 5java-1.6.0-ibmNot affected
Red Hat Enterprise Linux 6java-1.5.0-ibmNot affected
Red Hat Enterprise Linux 6java-1.6.0-ibmNot affected
Red Hat Enterprise Linux 5java-1.7.0-openjdkFixedRHSA-2013:016516.01.2013
Red Hat Enterprise Linux 6java-1.7.0-openjdkFixedRHSA-2013:016516.01.2013
Supplementary for Red Hat Enterprise Linux 5java-1.7.0-oracleFixedRHSA-2013:015614.01.2013
Supplementary for Red Hat Enterprise Linux 5java-1.7.0-ibmFixedRHSA-2013:062611.03.2013
Supplementary for Red Hat Enterprise Linux 6java-1.7.0-oracleFixedRHSA-2013:015614.01.2013
Supplementary for Red Hat Enterprise Linux 6java-1.7.0-ibmFixedRHSA-2013:062611.03.2013

Показывать по

Дополнительная информация

Статус:

Critical
https://bugzilla.redhat.com/show_bug.cgi?id=894934OpenJDK: MethodHandles incorrect permission checks (Libraries, 8004933)

EPSS

Процентиль: 80%
0.01406
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 12 лет назад

Unspecified vulnerability in Oracle Java 7 before Update 11 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2013-0422. NOTE: some parties have mapped CVE-2012-3174 to an issue involving recursive use of the Reflection API, but that issue is already covered as part of CVE-2013-0422. This identifier is for a different vulnerability whose details are not public as of 20130114.

nvd
больше 12 лет назад

Unspecified vulnerability in Oracle Java 7 before Update 11 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2013-0422. NOTE: some parties have mapped CVE-2012-3174 to an issue involving recursive use of the Reflection API, but that issue is already covered as part of CVE-2013-0422. This identifier is for a different vulnerability whose details are not public as of 20130114.

debian
больше 12 лет назад

Unspecified vulnerability in Oracle Java 7 before Update 11 allows rem ...

github
больше 3 лет назад

Unspecified vulnerability in Oracle Java 7 before Update 11 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2013-0422. NOTE: some parties have mapped CVE-2012-3174 to an issue involving recursive use of the Reflection API, but that issue is already covered as part of CVE-2013-0422. This identifier is for a different vulnerability whose details are not public as of 20130114.

oracle-oval
больше 12 лет назад

ELSA-2013-0165: java-1.7.0-openjdk security update (IMPORTANT)

EPSS

Процентиль: 80%
0.01406
Низкий

6.8 Medium

CVSS2