CVE-2012-0507
Description
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier, and 5.0 Update 33 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Concurrency. NOTE: the previous information was obtained from the February 2012 Oracle CPU. Oracle has not commented on claims from a downstream vendor and third party researchers that this issue occurs because the AtomicReferenceArray class implementation does not ensure that the array is of the Object[] type, which allows attackers to cause a denial of service (JVM crash) or bypass Java sandbox restrictions. NOTE: this issue was originally mapped to CVE-2011-3571, but that identifier was already assigned to a different issue.
EPSS (Exploit Prediction Scoring System)
EPSS (Exploit Prediction Scoring System)
Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.
EPSS Score Trend (Last 91 Days)
Access of Resource Using Incompatible Type ('Type Confusion')
IncompleteCommon Consequences
Applicable Platforms
Java - AtomicReferenceArray Type Violation (Metasploit)
Verified Metasploit Framework (MSF)Java - AtomicReferenceArray Type Violation (Metasploit)
View Exploit Code →Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update12:*:*:*:*:*:*
Debian Linux by Debian
cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update20:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update27:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_1:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_10:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_12:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update30:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update33:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_14:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update22:*:*:*:*:*:*
Debian Linux by Debian
cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update29:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_15:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_4:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_7:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_13:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_6:*:*:*:*:*:*
Linux Enterprise Java by Suse
cpe:2.3:o:suse:linux_enterprise_java:10:sp4:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update14:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update26:*:*:*:*:*:*
Linux Enterprise Desktop by Suse
cpe:2.3:o:suse:linux_enterprise_desktop:10:sp4:*:*:-:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update3:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update13:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update7:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_17:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update31:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update15:*:*:*:*:*:*
Linux Enterprise Software Development Kit by Suse
cpe:2.3:o:suse:linux_enterprise_software_development_kit:11:sp2:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update9:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:-:*:*:*:*:*:*
Linux Enterprise Java by Suse
cpe:2.3:o:suse:linux_enterprise_java:11:sp1:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_2:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update6:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update24:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update2:*:*:*:*:*:*
Linux Enterprise Server by Suse
cpe:2.3:o:suse:linux_enterprise_server:11:sp2:*:*:*:-:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update19:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_3:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update11:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:-:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update25:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update29:*:*:*:*:*:*
Linux Enterprise Server by Suse
cpe:2.3:o:suse:linux_enterprise_server:11:sp1:*:*:*:-:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update17:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update10:*:*:*:*:*:*
Linux Enterprise Server by Suse
cpe:2.3:o:suse:linux_enterprise_server:11:sp1:*:*:*:vmware:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update1:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_5:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_16:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_20:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update21:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update24:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update28:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update18:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update5:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_19:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_11:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_18:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update2:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update25:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update23:*:*:*:*:*:*
Linux Enterprise Server by Suse
cpe:2.3:o:suse:linux_enterprise_server:10:sp4:*:*:-:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update26:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update23:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:-:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update16:*:*:*:*:*:*
Linux Enterprise Software Development Kit by Suse
cpe:2.3:o:suse:linux_enterprise_software_development_kit:11:sp1:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update8:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update22:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.6.0:update27:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.5.0:update4:*:*:*:*:*:*
Jre by Oracle
cpe:2.3:a:oracle:jre:1.7.0:update1:*:*:*:*:*:*
Jre by Sun
cpe:2.3:a:sun:jre:1.6.0:update_21:*:*:*:*:*:*