Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-16243

Опубликовано: 21 июл. 2026
Источник: redhat
CVSS3: 4.8

Описание

In Eclipse OMR versions up to 0.11, the arraycmp SIMD implementation for Z and P does not check if the number of bytes to compare is zero.

A flaw was found in Eclipse OMR. The arraycmp SIMD (Single Instruction, Multiple Data) implementation for Z and P architectures does not properly validate input by failing to check if the number of bytes to compare is zero. This oversight could allow a remote attacker, with low privileges and user interaction, to trigger a denial of service (DoS) condition, making the affected system unavailable.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-1284
https://bugzilla.redhat.com/show_bug.cgi?id=2503988Eclipse OMR: Eclipse OMR: Denial of service via improper input validation in arraycmp SIMD

4.8 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
27 дней назад

In Eclipse OMR versions up to 0.11, the arraycmp SIMD implementation for Z and P does not check if the number of bytes to compare is zero.

CVSS3: 7.5
github
27 дней назад

In Eclipse OMR versions up to 0.11, the arraycmp SIMD implementation for Z and P does not check if the number of bytes to compare is zero.

suse-cvrf
4 дня назад

Security update for java-1_8_0-ibm

suse-cvrf
4 дня назад

Security update for java-1_8_0-ibm

4.8 Medium

CVSS3