RETIRED: Oracle Java SE Critical Patch Update June 2012 Advance Notification

On June 12, 2012, Oracle will be releasing an advisory addressing 14 vulnerabilities affecting Java SE. 12 of these vulnerabilities can be exploited remotely without authentication. The highest CVSS 2.0 base score for these vulnerabilities is 10.

The following products are affected:

JDK and JRE 7 Update 4 and earlier for Windows, Solaris, and Linux
JDK and JRE 6 Update 32 and earlier for Windows, Solaris, and Linux
JDK and JRE 5.0 Update 35 and earlier for Windows, Solaris, and Linux
SDK and JRE 1.4.2_37 and earlier for Windows, Solaris, and Linux
JavaFX 2.1 and earlier for Windows, Solaris, and Linux

This BID is being retired. The following individual records exist to better document the issues:

53946 Oracle Java SE CVE-2012-1713 Remote Java Runtime Environment Vulnerability
53947 Oracle Java SE CVE-2012-1716 Remote Java Runtime Environment Vulnerability
53949 Oracle Java SE CVE-2012-1711 Remote Java Runtime Environment Vulnerability
53950 Oracle Java SE CVE-2012-1719 Remote Java Runtime Environment Vulnerability
53136 Oracle GlassFish Server Multiple Cross Site Scripting and HTML Injection Vulnerabilities
53951 Oracle Java SE CVE-2012-1718 Remote Java Runtime Environment Vulnerability
53958 Oracle Java SE CVE-2012-1724 Remote Java Runtime Environment Vulnerability
53959 Oracle Java SE CVE-2012-1721 Remote Java Runtime Environment Vulnerability
53960 Oracle Java SE CVE-2012-1723 Remote Java Runtime Environment Vulnerability
53952 Oracle Java SE CVE-2012-1717 Remote Java Runtime Environment Vulnerability
53948 Oracle Java SE CVE-2012-1726 Remote Java Runtime Environment Vulnerability
53954 Oracle Java SE CVE-2012-1725 Remote Java Runtime Environment Vulnerability
53953 Oracle Java SE CVE-2012-1722 Remote Java Runtime Environment Vulnerability
53956 Oracle Java SE CVE-2012-1720 Remote Java Runtime Environment Vulnerability


 

Privacy Statement
Copyright 2010, SecurityFocus