PT-2012-2614 · Oracle+3 · Java Se+4

Published

2012-02-15

·

Updated

2022-05-13

·

CVE-2012-0498

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Oracle Java SE versions 7 Update 2 and earlier, 6 Update 30 and earlier, 5.0 Update 33 and earlier
Description The issue affects the Java Runtime Environment component, allowing remote attackers to impact confidentiality, integrity, and availability through unknown vectors related to 2D.
Recommendations For Oracle Java SE versions 7 Update 2 and earlier, 6 Update 30 and earlier, and 5.0 Update 33 and earlier, update to a version that is not affected by this issue. As a temporary workaround, consider restricting access to the Java Runtime Environment until a patch is available. Avoid using the readMabCurveData function with untrusted input for the nTblSize variable until the issue is resolved.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2012-0498
HPSBUX02757
HPSBUX02760
HPSBUX02784
RHSA-2012:0139
RHSA-2012:0508
RHSA-2012:0514
RHSA-2012_0139
RHSA-2012_0508
RHSA-2012_0514
RHSA-2013:1455
ZDI-12-060

Affected Products

Hp-Ux
Java Platform
Java Se
Red Hat
Suse