CVE-2012-1682

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 6 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Beans, a different vulnerability than CVE-2012-3136.  NOTE: Oracle has not commented on claims from a downstream vendor that this issue is related to "XMLDecoder security issue via ClassFinder."
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 86%
Affected Products (NVD)
VendorProductVersion
oraclejdk
𝑥
≤ 1.7.0
oraclejdk
1.7.0
oraclejdk
1.7.0
oraclejdk
1.7.0
oraclejdk
1.7.0
oraclejdk
1.7.0
oraclejdk
1.7.0
oraclejre
𝑥
≤ 1.7.0
oraclejre
1.7.0
oraclejre
1.7.0
oraclejre
1.7.0
oraclejre
1.7.0
oraclejre
1.7.0
oraclejre
1.7.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
icedtea-web
hardy
dne
lucid
not-affected
natty
not-affected
oneiric
not-affected
precise
not-affected
quantal
not-affected
openjdk-6
hardy
Fixed 6b27-1.12.3-0ubuntu1~08.04.1
released
lucid
Fixed 6b24-1.11.4-1ubuntu0.10.04.1
released
natty
Fixed 6b24-1.11.4-1ubuntu0.11.04.1
released
oneiric
Fixed 6b24-1.11.4-1ubuntu0.11.10.1
released
precise
Fixed 6b24-1.11.4-1ubuntu0.12.04.1
released
quantal
not-affected
openjdk-6b18
hardy
dne
lucid
ignored
natty
ignored
oneiric
not-affected
precise
dne
quantal
dne
openjdk-7
hardy
dne
lucid
dne
natty
dne
oneiric
Fixed 7u9-2.3.3-0ubuntu1~11.10.1
released
precise
not-affected
quantal
not-affected
sun-java5
hardy
ignored
lucid
dne
natty
dne
oneiric
dne
precise
dne
quantal
dne
sun-java6
hardy
ignored
lucid
dne
natty
dne
oneiric
dne
precise
dne
quantal
dne
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
java-1_7_0-openjdk
suse enterprise sap 12 SP5
1.7.0.231-43.27.2
fixed
suse enterprise server 12 SP2
1.7.0.111-33.1
fixed
suse enterprise server 12 SP5
1.7.0.231-43.27.2
fixed
java-1_7_0-openjdk-demo
suse enterprise sap 12 SP5
1.7.0.231-43.27.2
fixed
suse enterprise server 12 SP2
1.7.0.111-33.1
fixed
suse enterprise server 12 SP5
1.7.0.231-43.27.2
fixed
java-1_7_0-openjdk-devel
suse enterprise sap 12 SP5
1.7.0.231-43.27.2
fixed
suse enterprise server 12 SP2
1.7.0.111-33.1
fixed
suse enterprise server 12 SP5
1.7.0.231-43.27.2
fixed
java-1_7_0-openjdk-headless
suse enterprise sap 12 SP5
1.7.0.231-43.27.2
fixed
suse enterprise server 12 SP2
1.7.0.111-33.1
fixed
suse enterprise server 12 SP5
1.7.0.231-43.27.2
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
java-1.6.0-ibm
RHEL 6
1:1.6.0.12.0-1jpp.1.el6_3
fixed
java-1.6.0-ibm-demo
RHEL 6
1:1.6.0.12.0-1jpp.1.el6_3
fixed
java-1.6.0-ibm-devel
RHEL 6
1:1.6.0.12.0-1jpp.1.el6_3
fixed
java-1.6.0-ibm-javacomm
RHEL 6
1:1.6.0.12.0-1jpp.1.el6_3
fixed
java-1.6.0-ibm-jdbc
RHEL 6
1:1.6.0.12.0-1jpp.1.el6_3
fixed
java-1.6.0-ibm-plugin
RHEL 6
1:1.6.0.12.0-1jpp.1.el6_3
fixed
java-1.6.0-ibm-src
RHEL 6
1:1.6.0.12.0-1jpp.1.el6_3
fixed
java-1.6.0-openjdk
RHEL 6
1:1.6.0.0-1.49.1.11.4.el6_3
fixed
java-1.6.0-openjdk-demo
RHEL 6
1:1.6.0.0-1.49.1.11.4.el6_3
fixed
java-1.6.0-openjdk-devel
RHEL 6
1:1.6.0.0-1.49.1.11.4.el6_3
fixed
java-1.6.0-openjdk-javadoc
RHEL 6
1:1.6.0.0-1.49.1.11.4.el6_3
fixed
java-1.6.0-openjdk-src
RHEL 6
1:1.6.0.0-1.49.1.11.4.el6_3
fixed
java-1.7.0-ibm
RHEL 6
1:1.7.0.2.0-1jpp.3.el6_3
fixed
java-1.7.0-ibm-demo
RHEL 6
1:1.7.0.2.0-1jpp.3.el6_3
fixed
java-1.7.0-ibm-devel
RHEL 6
1:1.7.0.2.0-1jpp.3.el6_3
fixed
java-1.7.0-ibm-jdbc
RHEL 6
1:1.7.0.2.0-1jpp.3.el6_3
fixed
java-1.7.0-ibm-plugin
RHEL 6
1:1.7.0.2.0-1jpp.3.el6_3
fixed
java-1.7.0-ibm-src
RHEL 6
1:1.7.0.2.0-1jpp.3.el6_3
fixed
java-1.7.0-openjdk
RHEL 6
1:1.7.0.5-2.2.1.el6_3.3
fixed
java-1.7.0-openjdk-demo
RHEL 6
1:1.7.0.5-2.2.1.el6_3.3
fixed
java-1.7.0-openjdk-devel
RHEL 6
1:1.7.0.5-2.2.1.el6_3.3
fixed
java-1.7.0-openjdk-javadoc
RHEL 6
1:1.7.0.5-2.2.1.el6_3.3
fixed
java-1.7.0-openjdk-src
RHEL 6
1:1.7.0.5-2.2.1.el6_3.3
fixed
java-1.7.0-oracle
RHEL 6
1:1.7.0.7-1jpp.5.el6_3
fixed
java-1.7.0-oracle-devel
RHEL 6
1:1.7.0.7-1jpp.5.el6_3
fixed
java-1.7.0-oracle-jdbc
RHEL 6
1:1.7.0.7-1jpp.5.el6_3
fixed
java-1.7.0-oracle-plugin
RHEL 6
1:1.7.0.7-1jpp.5.el6_3
fixed
java-1.7.0-oracle-src
RHEL 6
1:1.7.0.7-1jpp.5.el6_3
fixed