Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-41041

Опубликовано: 27 апр. 2022
Источник: redhat
CVSS3: 5.3

Описание

In Eclipse Openj9 before version 0.32.0, Java 8 & 11 fail to throw the exception captured during bytecode verification when verification is triggered by a MethodHandle invocation, allowing unverified methods to be invoked using MethodHandles.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7java-1.7.1-ibmNot affected
Red Hat Enterprise Linux 7 Supplementaryjava-1.8.0-ibmFixedRHSA-2022:495908.06.2022
Red Hat Enterprise Linux 8java-1.8.0-ibmFixedRHSA-2022:583702.08.2022

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-252
Дефект:
CWE-843
Дефект:
CWE-908
https://bugzilla.redhat.com/show_bug.cgi?id=2080954java-11-openj9,java-1_8_0-openj9: unverified methods can be invoked using MethodHandles

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
ubuntu
почти 4 года назад

In Eclipse Openj9 before version 0.32.0, Java 8 & 11 fail to throw the exception captured during bytecode verification when verification is triggered by a MethodHandle invocation, allowing unverified methods to be invoked using MethodHandles.

CVSS3: 5.3
nvd
почти 4 года назад

In Eclipse Openj9 before version 0.32.0, Java 8 & 11 fail to throw the exception captured during bytecode verification when verification is triggered by a MethodHandle invocation, allowing unverified methods to be invoked using MethodHandles.

CVSS3: 5.3
github
почти 4 года назад

In Eclipse Openj9 before version 0.32.0, Java 8 & 11 fail to throw the exception captured during bytecode verification when verification is triggered by a MethodHandle invocation, allowing unverified methods to be invoked using MethodHandles.

suse-cvrf
больше 3 лет назад

Security update for java-1_8_0-openj9

suse-cvrf
12 месяцев назад

Security update for java-11-openj9

5.3 Medium

CVSS3