-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Reference: CERT-EU Security Advisory 2012-0079 Title: Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 [1] Version history: 03.07.2011 Initial publication Summary ======= Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier allows remote attackers to affect confidentiality and integrity via unknown vectors related to Libraries [2] CVE-2012-1726 CVSS v2 Base Score:6.4 (MEDIUM) (AV:N/AC:L/Au:N/C:P/I:P/A:N) [3] Potential impact ================ The vulnerability allows remote attackers to affect confidentiality and integrity via unknown vectors related to Libraries and can be exploited over multiple protocols. This issue affects the 'Libraries' sub- component. Vulnerable Systems ================== Oracle Java SE version 7 Update 4 What can you do? ================ Vendor updates are available. [2,4]. What to tell your users? ======================== N/A More information ================ [1] http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-1726 [2] http://www.securityfocus.com/bid/53948/discuss [3] More information about CVSS is available at: http://www.first.org/cvss/cvss-guide.html [4] http://www.oracle.com/technetwork/topics/security/javacpujun2012-1515912.html Best regards, CERT-EU Pre-configuration Team (http://cert.europa.eu) Phone: +32.2.2990005 / e-mail: cert-eu@ec.europa.eu PGP KeyID 0x46AC4383 FP: 9011 6BE9 D642 DD93 8348 DAFA 27A4 06CA 46AC 4383 -----BEGIN PGP SIGNATURE----- Version: BCPG v1.39 iQJXBAEBAgBBBQJP8s6eOhxDRVJUIGZvciB0aGUgRXVyb3BlYW4gSW5zdGl0dXRp b25zIDxjZXJ0LWV1QGVjLmV1cm9wYS5ldT4ACgkQJ6QGykasQ4N1OA//Ud/iC3eg zD/QlpQUmtSb9er6ven28snuejhYhIT8+FlDoVnV7PdH8aA2sXQlc7FAN5O2TJzs sZ3l0bvM7rD2vdbjzKoJp5/8y8bjIVooEbe1G7VNGJRHuCXQ2w8eA7w8j3H/+xFT Zd1Udj3d8Twefpb94BAJx6mVeM6nlfW3dCzLmoOeHRzZeCSQ4dDPNhDtNTc44Pt9 7lsrLmKrXGlEHKKrSBUj9T/8gZErr69EqDkCq02JAGDkknJqHuBnJt4WRKxHvej0 aQdqRa3C2nwJ4fLcwRBS/aDmV770oYOql5u8FeNiwIKaD+Mzns93d0Eon33OFy2d h5IbUEQ88BMPjYNzjWCif7Dl0vMAYXHWcR9Y7RZV9ikjFOJTYQGzGnL3xleypLTY Q6iKUxy5gT/8c73E2Y/aFIe/ZnkgjSPts+G0zffT6GOCltUsDL5tkOFfsVzRIBx/ +VLuGwQBeGuEqxOOxU3QDydA7FnudHdfy7YSBh8cudDtoTyYjfdQpCG/ZkeeruNK qJNg84JoZYVAkF9bLDDT3dUUBIIA9KSC/hBCXyJE4uORQko/dxjY74VpOsN68j13 cFD41GqmKw5xJ5gnS/8PmdO1vqqFm9GbT9o+yHXT+MNyQpAM1xRiSbpPtAPl1khn a1VS/FOPRNQsN+49Fh8QjvnZJo9+pa+AFu4= =Bwel -----END PGP SIGNATURE-----