Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-41041

Опубликовано: 27 апр. 2022
Источник: nvd
CVSS3: 5.3
CVSS2: 5
EPSS Низкий

Описание

In Eclipse Openj9 before version 0.32.0, Java 8 & 11 fail to throw the exception captured during bytecode verification when verification is triggered by a MethodHandle invocation, allowing unverified methods to be invoked using MethodHandles.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:eclipse:openj9:*:*:*:*:*:*:*:*
Версия до 0.32.0 (исключая)
Конфигурация 2

Одно из

cpe:2.3:a:oracle:java_se:8:*:*:*:*:*:*:*
cpe:2.3:a:oracle:java_se:11:*:*:*:*:*:*:*

EPSS

Процентиль: 29%
0.00104
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-252
CWE-252

Связанные уязвимости

CVSS3: 5.3
ubuntu
почти 4 года назад

In Eclipse Openj9 before version 0.32.0, Java 8 & 11 fail to throw the exception captured during bytecode verification when verification is triggered by a MethodHandle invocation, allowing unverified methods to be invoked using MethodHandles.

CVSS3: 5.3
redhat
почти 4 года назад

In Eclipse Openj9 before version 0.32.0, Java 8 & 11 fail to throw the exception captured during bytecode verification when verification is triggered by a MethodHandle invocation, allowing unverified methods to be invoked using MethodHandles.

CVSS3: 5.3
github
почти 4 года назад

In Eclipse Openj9 before version 0.32.0, Java 8 & 11 fail to throw the exception captured during bytecode verification when verification is triggered by a MethodHandle invocation, allowing unverified methods to be invoked using MethodHandles.

suse-cvrf
больше 3 лет назад

Security update for java-1_8_0-openj9

suse-cvrf
12 месяцев назад

Security update for java-11-openj9

EPSS

Процентиль: 29%
0.00104
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-252
CWE-252