Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-0547

Опубликовано: 30 авг. 2012
Источник: ubuntu
Приоритет: low
EPSS Средний

Описание

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 6 and earlier, and 6 Update 34 and earlier, has no impact and remote attack vectors involving AWT and "a security-in-depth issue that is not directly exploitable but which can be used to aggravate security vulnerabilities that can be directly exploited." NOTE: this identifier was assigned by the Oracle CNA, but CVE is not intended to cover defense-in-depth issues that are only exposed by the presence of other vulnerabilities. NOTE: Oracle has not commented on claims from a downstream vendor that this issue is related to "toolkit internals references."

РелизСтатусПримечание
devel

not-affected

hardy

DNE

lucid

not-affected

natty

not-affected

oneiric

not-affected

precise

not-affected

quantal

not-affected

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

not-affected

6b24-1.11.4-3ubuntu1
hardy

released

6b27-1.12.3-0ubuntu1~08.04.1
lucid

released

6b24-1.11.4-1ubuntu0.10.04.1
natty

released

6b24-1.11.4-1ubuntu0.11.04.1
oneiric

released

6b24-1.11.4-1ubuntu0.11.10.1
precise

released

6b24-1.11.4-1ubuntu0.12.04.1
quantal

not-affected

6b24-1.11.4-3ubuntu1
upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

ignored

end of life
natty

ignored

end of life
oneiric

not-affected

superceded
precise

DNE

quantal

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

not-affected

7u7-2.3.2-1ubuntu1
hardy

DNE

lucid

DNE

natty

DNE

oneiric

released

7u9-2.3.3-0ubuntu1~11.10.1
precise

not-affected

7u7-2.3.2-1ubuntu0.12.04.1
quantal

not-affected

7u7-2.3.2-1ubuntu1
upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

ignored

end of life
lucid

DNE

natty

DNE

oneiric

DNE

precise

DNE

quantal

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

ignored

end of life
lucid

DNE

removed from archive
natty

DNE

removed from archive
oneiric

DNE

precise

DNE

quantal

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 93%
0.10761
Средний

Связанные уязвимости

redhat
почти 13 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 6 and earlier, and 6 Update 34 and earlier, has no impact and remote attack vectors involving AWT and "a security-in-depth issue that is not directly exploitable but which can be used to aggravate security vulnerabilities that can be directly exploited." NOTE: this identifier was assigned by the Oracle CNA, but CVE is not intended to cover defense-in-depth issues that are only exposed by the presence of other vulnerabilities. NOTE: Oracle has not commented on claims from a downstream vendor that this issue is related to "toolkit internals references."

nvd
почти 13 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 6 and earlier, and 6 Update 34 and earlier, has no impact and remote attack vectors involving AWT and "a security-in-depth issue that is not directly exploitable but which can be used to aggravate security vulnerabilities that can be directly exploited." NOTE: this identifier was assigned by the Oracle CNA, but CVE is not intended to cover defense-in-depth issues that are only exposed by the presence of other vulnerabilities. NOTE: Oracle has not commented on claims from a downstream vendor that this issue is related to "toolkit internals references."

debian
почти 13 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) compon ...

github
больше 3 лет назад

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 6 and earlier, and 6 Update 34 and earlier, has no impact and remote attack vectors involving AWT and "a security-in-depth issue that is not directly exploitable but which can be used to aggravate security vulnerabilities that can be directly exploited." NOTE: this identifier was assigned by the Oracle CNA, but CVE is not intended to cover defense-in-depth issues that are only exposed by the presence of other vulnerabilities. NOTE: Oracle has not commented on claims from a downstream vendor that this issue is related to "toolkit internals references."

oracle-oval
почти 13 лет назад

ELSA-2012-1222: java-1.6.0-openjdk security update (IMPORTANT)

EPSS

Процентиль: 93%
0.10761
Средний
Уязвимость CVE-2012-0547