Логотип exploitDog
bind:"BDU:2024-00604" OR bind:"CVE-2024-20921"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2024-00604" OR bind:"CVE-2024-20921"

Количество 27

Количество 27

fstec логотип

BDU:2024-00604

больше 1 года назад

Уязвимость компонента Hotspot программной платформы Oracle Java SE и виртуальных машин Oracle GraalVM for JDK и Oracle GraalVM Enterprise Edition, позволяющая нарушителю получить доступ к конфиденциальной информации

CVSS3: 5.9
EPSS: Низкий
redos логотип

ROS-20240730-18

11 месяцев назад

Множественные уязвимости java-21-openjdk

CVSS3: 7.4
EPSS: Низкий
redos логотип

ROS-20240730-17

11 месяцев назад

Множественные уязвимости java-17-openjdk

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20240730-16

11 месяцев назад

Множественные уязвимости java-11-openjdk

CVSS3: 7.4
EPSS: Низкий
redos логотип

ROS-20240730-14

11 месяцев назад

Множественные уязвимости java-1.8.0-openjdk

CVSS3: 7.4
EPSS: Низкий
ubuntu логотип

CVE-2024-20921

больше 1 года назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21, 17.0.9, 21.0.1; Oracle GraalVM for JDK: 17.0.9, 21.0.1; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and 22.3.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java ...

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2024-20921

больше 1 года назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21, 17.0.9, 21.0.1; Oracle GraalVM for JDK: 17.0.9, 21.0.1; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and 22.3.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed J...

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2024-20921

больше 1 года назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21, 17.0.9, 21.0.1; Oracle GraalVM for JDK: 17.0.9, 21.0.1; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and 22.3.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2024-20921

больше 1 года назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle Gr ...

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-hxqj-hr64-7vf7

больше 1 года назад

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21, 17.0.9, 21.0.1; Oracle GraalVM for JDK: 17.0.9, 21.0.1; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and 22.3.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed J...

CVSS3: 5.9
EPSS: Низкий
oracle-oval логотип

ELSA-2024-0249

больше 1 года назад

ELSA-2024-0249: java-21-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-0248

больше 1 года назад

ELSA-2024-0248: java-21-openjdk security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0847-1

больше 1 года назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0804-1

больше 1 года назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0325-1

больше 1 года назад

Security update for java-17-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0321-1

больше 1 года назад

Security update for java-11-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0203-1

больше 1 года назад

Security update for java-11-openjdk

EPSS: Низкий
oracle-oval логотип

ELSA-2024-0267

больше 1 года назад

ELSA-2024-0267: java-17-openjdk security and bug fix update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-0266

больше 1 года назад

ELSA-2024-0266: java-11-openjdk security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-0265

больше 1 года назад

ELSA-2024-0265: java-1.8.0-openjdk security and bug fix update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2024-00604

Уязвимость компонента Hotspot программной платформы Oracle Java SE и виртуальных машин Oracle GraalVM for JDK и Oracle GraalVM Enterprise Edition, позволяющая нарушителю получить доступ к конфиденциальной информации

CVSS3: 5.9
0%
Низкий
больше 1 года назад
redos логотип
ROS-20240730-18

Множественные уязвимости java-21-openjdk

CVSS3: 7.4
11 месяцев назад
redos логотип
ROS-20240730-17

Множественные уязвимости java-17-openjdk

CVSS3: 7.5
11 месяцев назад
redos логотип
ROS-20240730-16

Множественные уязвимости java-11-openjdk

CVSS3: 7.4
11 месяцев назад
redos логотип
ROS-20240730-14

Множественные уязвимости java-1.8.0-openjdk

CVSS3: 7.4
11 месяцев назад
ubuntu логотип
CVE-2024-20921

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21, 17.0.9, 21.0.1; Oracle GraalVM for JDK: 17.0.9, 21.0.1; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and 22.3.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java ...

CVSS3: 5.9
0%
Низкий
больше 1 года назад
redhat логотип
CVE-2024-20921

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21, 17.0.9, 21.0.1; Oracle GraalVM for JDK: 17.0.9, 21.0.1; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and 22.3.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed J...

CVSS3: 5.9
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-20921

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21, 17.0.9, 21.0.1; Oracle GraalVM for JDK: 17.0.9, 21.0.1; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and 22.3.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java

CVSS3: 5.9
0%
Низкий
больше 1 года назад
debian логотип
CVE-2024-20921

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle Gr ...

CVSS3: 5.9
0%
Низкий
больше 1 года назад
github логотип
GHSA-hxqj-hr64-7vf7

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21, 17.0.9, 21.0.1; Oracle GraalVM for JDK: 17.0.9, 21.0.1; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and 22.3.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed J...

CVSS3: 5.9
0%
Низкий
больше 1 года назад
oracle-oval логотип
ELSA-2024-0249

ELSA-2024-0249: java-21-openjdk security update (IMPORTANT)

больше 1 года назад
oracle-oval логотип
ELSA-2024-0248

ELSA-2024-0248: java-21-openjdk security update (IMPORTANT)

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0847-1

Security update for java-1_8_0-openjdk

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0804-1

Security update for java-1_8_0-openjdk

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0325-1

Security update for java-17-openjdk

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0321-1

Security update for java-11-openjdk

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0203-1

Security update for java-11-openjdk

больше 1 года назад
oracle-oval логотип
ELSA-2024-0267

ELSA-2024-0267: java-17-openjdk security and bug fix update (IMPORTANT)

больше 1 года назад
oracle-oval логотип
ELSA-2024-0266

ELSA-2024-0266: java-11-openjdk security update (IMPORTANT)

больше 1 года назад
oracle-oval логотип
ELSA-2024-0265

ELSA-2024-0265: java-1.8.0-openjdk security and bug fix update (IMPORTANT)

больше 1 года назад

Уязвимостей на страницу