CVE-2012-4305
02.02.2013, 00:55
Unspecified vulnerability in the JavaFX component in Oracle Java SE JavaFX 2.2.4 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than other CVEs listed in the February 2013 CPU. NOTE: the previous information is from the February 2013 CPU. Oracle has not commented on claims from a third party that the issue allows remote attackers to execute arbitrary code via vectors related to an "invalid type cast" and exposed native methods in the T2KGlyph class.Enginsight
| Vendor | Product | Version |
|---|---|---|
| oracle | javafx | 𝑥 ≤ 2.2.4 |
| oracle | javafx | 2.0 |
| oracle | javafx | 2.0.2 |
| oracle | javafx | 2.0.3 |
| oracle | javafx | 2.1 |
| oracle | javafx | 2.2 |
| oracle | javafx | 2.2.3 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| openjdk-6 |
| ||||||||||
| openjdk-6b18 |
| ||||||||||
| openjdk-7 |
| ||||||||||
| sun-java5 |
| ||||||||||
| sun-java6 |
|
References