CVE-2012-1724: Oracle JDK

Medium severity, CVSS 5.0. EPSS: 3.9% chance of exploitation in the next 30 days.

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, and 6 update 32 and earlier, allows remote attackers to affect availability, related to JAXP.

Affected products

  • Oracle JDK: up to and including 1.7.0; version 1.7.0 only; up to and including 1.6.0; version 1.6.0 only
  • Oracle JRE: up to and including 1.7.0; version 1.7.0 only; up to and including 1.6.0; version 1.6.0 only
  • Sun JDK: version 1.6.0 only
  • Sun JRE: version 1.6.0 only

Published 2012-06-16. Last modified 2026-06-16.