Answer in brief
CVE-2012-0507 records a High severity (CVSS 9.8) vulnerability in CVE Program Container. The current sources mark it as known exploited. The current feed maps n/a/n/a (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
CVSS is 9.8. Known-exploitation status makes exposure review time-sensitive. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps n/a/n/a (generic). Check affected ranges and fixed versions before updating.
| Product | Affected versions | Fixed versions |
|---|---|---|
| cpe:2.3:a:oracle:jre:1.6.0:update22:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:oracle:jre:1.6.0:update23:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:oracle:jre:1.6.0:update24:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:oracle:jre:1.6.0:update25:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:oracle:jre:1.6.0:update26:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:oracle:jre:1.6.0:update27:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:oracle:jre:1.6.0:update29:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:oracle:jre:1.6.0:update30:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:oracle:jre:1.7.0:-:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:oracle:jre:1.7.0:update1:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:oracle:jre:1.7.0:update2:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:-:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update1:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update10:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update11:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update12:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update13:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update14:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update15:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update16:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update17:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update18:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update19:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update2:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update20:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update21:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update22:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update23:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update24:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update25:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update26:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update27:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update28:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update29:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update3:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update31:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update33:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update4:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update5:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update6:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update7:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update8:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.5.0:update9:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:-:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_1:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_10:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_11:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_12:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_13:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_14:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_15:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_16:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_17:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_18:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_19:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_2:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_20:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_21:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_3:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_4:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_5:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_6:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:a:sun:jre:1.6.0:update_7:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:o:suse:linux_enterprise_desktop:10:sp4:*:*:-:*:*:* | Not reported | Not reported |
| cpe:2.3:o:suse:linux_enterprise_java:10:sp4:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:o:suse:linux_enterprise_java:11:sp1:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:o:suse:linux_enterprise_server:10:sp4:*:*:-:*:*:* | Not reported | Not reported |
| cpe:2.3:o:suse:linux_enterprise_server:11:sp1:*:*:*:-:*:* | Not reported | Not reported |
| cpe:2.3:o:suse:linux_enterprise_server:11:sp1:*:*:*:vmware:*:* | Not reported | Not reported |
| cpe:2.3:o:suse:linux_enterprise_server:11:sp2:*:*:*:-:*:* | Not reported | Not reported |
| cpe:2.3:o:suse:linux_enterprise_software_development_kit:11:sp1:*:*:*:*:*:* | Not reported | Not reported |
| cpe:2.3:o:suse:linux_enterprise_software_development_kit:11:sp2:*:*:*:*:*:* | Not reported | Not reported |
| Package | Affected range | Fixed version |
|---|---|---|
| n/a/n/ageneric | n/a | Not reported |
Published upstream
Jun 7, 2012
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 14, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
May 24, 2026
Added to CISA KEV
Mar 3, 2022
Evidence: source:kev:kev:kev:recordUnspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier, and 5.0 Update 33 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Concurrency. NOTE: the previous information was obtained from the February 2012 Oracle CPU. Oracle has not commented on claims from a downstream vendor and third party researchers that this issue occurs because the AtomicReferenceArray class implementation does not ensure that the array is of the Object[] type, which allows attackers to cause a denial of service (JVM crash) or bypass Java sandbox restrictions. NOTE: this issue was originally mapped to CVE-2011-3571, but that identifier was already assigned to a different issue.
Quoted source text, attributed separately from HOL analysis.