Vulnerability Description
Multiple unspecified vulnerabilities in the Oracle JRockit component in Oracle Fusion Middleware 28.2.4 and earlier, and 27.7.3 and earlier, when using JDK/JRE 5 or 6, allow remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: this overlaps CVE-2012-5083, CVE-2012-1531, CVE-2012-5081, and CVE-2012-5085.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Jrockit | >= r27.7.0, <= r27.7.3 |
| Sun | Jdk | 1.5.0 |
| Sun | Jre | 1.5.0 |
References
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.htmlPatchVendor Advisory
- http://www.securityfocus.com/bid/56050Third Party AdvisoryVDB Entry
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.htmlPatchVendor Advisory
- http://www.securityfocus.com/bid/56050Third Party AdvisoryVDB Entry
FAQ
What is CVE-2012-3202?
CVE-2012-3202 is a vulnerability with a CVSS score of 10.0 (HIGH). Multiple unspecified vulnerabilities in the Oracle JRockit component in Oracle Fusion Middleware 28.2.4 and earlier, and 27.7.3 and earlier, when using JDK/JRE 5 or 6, allow remote attackers to affect...
How severe is CVE-2012-3202?
CVE-2012-3202 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2012-3202?
Check the references section above for vendor advisories and patch information. Affected products include: Oracle Jrockit, Sun Jdk, Sun Jre.