CVE-2010-4472: Low severity sun java runtime environment (jre) vulnerability
Unspecified vulnerability in the Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier allows remote attackers to affect availability, related to XML Digital Signature and unspecified APIs. NOTE: the previous information was obtained from the February 2011 CPU. Oracle has not commented on claims from a downstream vendor that this issue involves the replacement of the "XML DSig Transform or C14N algorithm implementations."
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-4472?
CVE-2010-4472 has a critical severity level as it allows remote attackers to affect the availability of the system.
How do I fix CVE-2010-4472?
To fix CVE-2010-4472, update your Java Runtime Environment to the latest version available from Oracle.
Which versions of Java are affected by CVE-2010-4472?
CVE-2010-4472 affects Java SE and Java for Business 6 Update 23 and earlier, including various specific updates of 1.6.0.
What type of vulnerability is CVE-2010-4472?
CVE-2010-4472 is an unspecified vulnerability related to XML Digital Signature and certain APIs.
Can CVE-2010-4472 be exploited remotely?
Yes, CVE-2010-4472 can be exploited remotely, which poses significant risks to system availability.