Vulnerability Description
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 update 32 and earlier, 5 update 35 and earlier, and 1.4.2_37 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Jdk | <= 1.4.2_37 |
| Oracle | Jre | <= 1.4.2_37 |
| Redhat | Icedtea6 | < 1.10.8 |
| Redhat | Enterprise Linux Desktop | 5.0 |
| Redhat | Enterprise Linux Eus | 6.2 |
| Redhat | Enterprise Linux Server | 5.0 |
| Redhat | Enterprise Linux Server Aus | 6.2 |
| Redhat | Enterprise Linux Workstation | 5.0 |
Related Weaknesses (CWE)
References
- http://mail.openjdk.java.net/pipermail/distro-pkg-dev/2012-June/019076.htmlMailing List
- http://marc.info/?l=bugtraq&m=134496371727681&w=2Mailing List
- http://rhn.redhat.com/errata/RHSA-2012-0734.htmlThird Party Advisory
- http://secunia.com/advisories/51080Broken Link
- http://security.gentoo.org/glsa/glsa-201406-32.xmlThird Party Advisory
- http://www.ibm.com/support/docview.wss?uid=swg21615246Broken Link
- http://www.mandriva.com/security/advisories?name=MDVSA-2012:095Broken Link
- http://www.oracle.com/technetwork/topics/security/javacpujun2012-1515912.htmlVendor Advisory
- http://www.securityfocus.com/bid/53960Broken LinkThird Party AdvisoryVDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Broken Link
- http://mail.openjdk.java.net/pipermail/distro-pkg-dev/2012-June/019076.htmlMailing List
- http://marc.info/?l=bugtraq&m=134496371727681&w=2Mailing List
- http://rhn.redhat.com/errata/RHSA-2012-0734.htmlThird Party Advisory
- http://secunia.com/advisories/51080Broken Link
- http://security.gentoo.org/glsa/glsa-201406-32.xmlThird Party Advisory
FAQ
What is CVE-2012-1723?
CVE-2012-1723 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 update 32 and earlier, 5 update 35 and earlier, and 1.4.2_37 and earlier allows re...
How severe is CVE-2012-1723?
CVE-2012-1723 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2012-1723?
Check the references section above for vendor advisories and patch information. Affected products include: Oracle Jdk, Oracle Jre, Redhat Icedtea6, Redhat Enterprise Linux Desktop, Redhat Enterprise Linux Eus.