CVE-2012-0507
Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability
Does this matter?
Known to be exploited in the wild (CISA KEV, CISA remediation deadline 24 March 2022). Treat as an emergency change: patch or isolate now, then hunt for prior compromise.
Description
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier, and 5.0 Update 33 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Concurrency. NOTE: the previous information was obtained from the February 2012 Oracle CPU. Oracle has not commented on claims from a downstream vendor and third party researchers that this issue occurs because the AtomicReferenceArray class implementation does not ensure that the array is of the Object[] type, which allows attackers to cause a denial of service (JVM crash) or bypass Java sandbox restrictions. NOTE: this issue was originally mapped to CVE-2011-3571, but that identifier was already assigned to a different issue.
- CVSS 3.1
- 9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 98.11% probability · 100th percentile
- CISA KEV
- Listed 3 March 2022 · due 24 March 2022 · used in ransomware campaigns
- Weakness
- CWE-843
- Affected
- sun/jre · oracle/jre · debian/debian linux · suse/linux enterprise desktop · suse/linux enterprise java · suse/linux enterprise server · suse/linux enterprise software development kit
- Source
- secalert_us@oracle.com
CISA notes
Apply updates per vendor instructions. https://nvd.nist.gov/vuln/detail/CVE-2012-0507
References
- http://blogs.technet.com/b/mmpc/archive/2012/03/20/an-interesting-case-of-jre-sandbox-breach-cve-2012-0507.aspxBroken Link, Third Party Advisory
- http://krebsonsecurity.com/2012/03/new-java-attack-rolled-into-exploit-packs/Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-05/msg00009.htmlIssue Tracking, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-05/msg00010.htmlMailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=133364885411663&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=133365109612558&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=133847939902305&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=134254866602253&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=134254957702612&w=2Third Party Advisory
- http://rhn.redhat.com/errata/RHSA-2012-0508.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2012-0514.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2013-1455.htmlThird Party Advisory
- http://secunia.com/advisories/48589Broken Link, Not Applicable
- http://secunia.com/advisories/48692Broken Link, Not Applicable
- http://secunia.com/advisories/48915Broken Link, Not Applicable
- http://secunia.com/advisories/48948Broken Link, Not Applicable
- http://secunia.com/advisories/48950Broken Link, Not Applicable
- http://weblog.ikvm.net/PermaLink.aspx?guid=cd48169a-9405-4f63-9087-798c4a1866d3Broken Link, Exploit
- http://www.debian.org/security/2012/dsa-2420Mailing List, Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/javacpufeb2012-366318.htmlVendor Advisory
- http://www.securityfocus.com/bid/52161Broken Link, Exploit, Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=788994Issue Tracking
- http://blogs.technet.com/b/mmpc/archive/2012/03/20/an-interesting-case-of-jre-sandbox-breach-cve-2012-0507.aspxBroken Link, Third Party Advisory
- http://krebsonsecurity.com/2012/03/new-java-attack-rolled-into-exploit-packs/Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-05/msg00009.htmlIssue Tracking, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-05/msg00010.htmlMailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=133364885411663&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=133365109612558&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=133847939902305&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=134254866602253&w=2Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.