CVE-2012-1543

EUVD-2012-1561
Unspecified vulnerability in the JavaFX component in Oracle Java SE JavaFX 2.2.4 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than other CVEs listed in the February 2013 CPU.  NOTE: the previous information is from the February 2013 CPU. Oracle has not commented on claims from a third party that the issue is due to an invalid type cast in the JSObject class.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.6 UNKNOWN
NETWORK
HIGH
AV:N/AC:H/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 84%
Affected Products (NVD)
VendorProductVersion
oraclejavafx
𝑥
≤ 2.2.4
oraclejavafx
2.0
oraclejavafx
2.0.2
oraclejavafx
2.0.3
oraclejavafx
2.1
oraclejavafx
2.2
oraclejavafx
2.2.3
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
openjdk-6
hardy
ignored
lucid
not-affected
oneiric
not-affected
precise
not-affected
quantal
not-affected
openjdk-6b18
hardy
dne
lucid
ignored
oneiric
ignored
precise
dne
quantal
dne
openjdk-7
hardy
dne
lucid
dne
oneiric
not-affected
precise
not-affected
quantal
not-affected
sun-java5
hardy
ignored
lucid
dne
oneiric
dne
precise
dne
quantal
dne
sun-java6
hardy
ignored
lucid
dne
oneiric
dne
precise
dne
quantal
dne