First published: Sat Feb 02 2013(Updated: )
Unspecified vulnerability in the JavaFX component in Oracle Java SE JavaFX 2.2.4 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than other CVEs listed in the February 2013 CPU. NOTE: the previous information is from the February 2013 CPU. Oracle has not commented on claims from a third party that the issue is due to an invalid type cast in the JSObject class.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle JavaFX | <=2.2.4 | |
Oracle JavaFX | =2.0 | |
Oracle JavaFX | =2.0.2 | |
Oracle JavaFX | =2.0.3 | |
Oracle JavaFX | =2.1 | |
Oracle JavaFX | =2.2 | |
Oracle JavaFX | =2.2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2012-1543 has not been explicitly categorized but it poses risks to confidentiality, integrity, and availability.
CVE-2012-1543 affects Oracle JavaFX versions 2.2.4 and earlier, including 2.0, 2.0.2, 2.0.3, 2.1, and 2.2.
To fix CVE-2012-1543, upgrade to a version of Oracle JavaFX that is not affected, specifically versions later than 2.2.4.
Yes, CVE-2012-1543 can be exploited remotely, potentially impacting users through unknown vectors.
The potential impacts of CVE-2012-1543 include compromised confidentiality, integrity, and availability of affected systems.