Thursday, December 26, 2019

New vulnerability on the NVD: CVE-2012-4420

An information disclosure flaw was found in the way the Java Virtual Machine (JVM) implementation of Java SE 7 as provided by OpenJDK 7 incorrectly initialized integer arrays after memory allocation (in certain circumstances they had nonzero elements right after the allocation). A remote attacker could use this flaw to obtain potentially sensitive information.

Published at: December 26, 2019 at 11:15PM
View on website

No comments:

Post a Comment