Логотип exploitDog
bind:"BDU:2023-05094" OR bind:"CVE-2021-35586"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2023-05094" OR bind:"CVE-2021-35586"

Количество 30

Количество 30

fstec логотип

BDU:2023-05094

около 4 лет назад

Уязвимость компонента ImageIO программной платформы Oracle Java SE и виртуальной машины Oracle GraalVM Enterprise Edition, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2021-35586

около 4 лет назад

Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS...

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2021-35586

около 4 лет назад

Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2021-35586

около 4 лет назад

Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2021-35586

около 4 лет назад

Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition produc ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-wr3h-rppv-6cm3

больше 3 лет назад

Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS...

CVSS3: 5.3
EPSS: Низкий
redos логотип

ROS-20240424-02

больше 1 года назад

Множественные уязвимости java-11-openjdk

CVSS3: 8.1
EPSS: Низкий
redos логотип

ROS-20240424-01

больше 1 года назад

Множественные уязвимости java-1.8.0-openjdk

CVSS3: 8.1
EPSS: Низкий
oracle-oval логотип

ELSA-2021-4135

около 4 лет назад

ELSA-2021-4135: java-17-openjdk security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3797-1

около 4 лет назад

Security update for java-1_7_0-openjdk

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:3671-1

около 4 лет назад

Security update for java-11-openjdk

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1480-1

около 4 лет назад

Security update for java-11-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3671-1

около 4 лет назад

Security update for java-11-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3528-1

около 4 лет назад

Security update for java-11-openjdk

EPSS: Низкий
oracle-oval логотип

ELSA-2021-3892

около 4 лет назад

ELSA-2021-3892: java-11-openjdk security and bug fix update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2021-3891

около 4 лет назад

ELSA-2021-3891: java-11-openjdk security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:3770-1

около 4 лет назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1500-1

около 4 лет назад

Security update for java-1_8_0-openjdk

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:14875-1

почти 4 года назад

Security update for java-1_7_1-ibm

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:0166-1

почти 4 года назад

Security update for java-1_7_1-ibm

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2023-05094

Уязвимость компонента ImageIO программной платформы Oracle Java SE и виртуальной машины Oracle GraalVM Enterprise Edition, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
0%
Низкий
около 4 лет назад
ubuntu логотип
CVE-2021-35586

Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS...

CVSS3: 5.3
0%
Низкий
около 4 лет назад
redhat логотип
CVE-2021-35586

Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS...

CVSS3: 5.3
0%
Низкий
около 4 лет назад
nvd логотип
CVE-2021-35586

Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS 3.

CVSS3: 5.3
0%
Низкий
около 4 лет назад
debian логотип
CVE-2021-35586

Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition produc ...

CVSS3: 5.3
0%
Низкий
около 4 лет назад
github логотип
GHSA-wr3h-rppv-6cm3

Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Oracle GraalVM Enterprise Edition. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability can also be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. CVSS...

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
redos логотип
ROS-20240424-02

Множественные уязвимости java-11-openjdk

CVSS3: 8.1
больше 1 года назад
redos логотип
ROS-20240424-01

Множественные уязвимости java-1.8.0-openjdk

CVSS3: 8.1
больше 1 года назад
oracle-oval логотип
ELSA-2021-4135

ELSA-2021-4135: java-17-openjdk security update (IMPORTANT)

около 4 лет назад
suse-cvrf логотип
SUSE-SU-2021:3797-1

Security update for java-1_7_0-openjdk

около 4 лет назад
suse-cvrf логотип
openSUSE-SU-2021:3671-1

Security update for java-11-openjdk

около 4 лет назад
suse-cvrf логотип
openSUSE-SU-2021:1480-1

Security update for java-11-openjdk

около 4 лет назад
suse-cvrf логотип
SUSE-SU-2021:3671-1

Security update for java-11-openjdk

около 4 лет назад
suse-cvrf логотип
SUSE-SU-2021:3528-1

Security update for java-11-openjdk

около 4 лет назад
oracle-oval логотип
ELSA-2021-3892

ELSA-2021-3892: java-11-openjdk security and bug fix update (IMPORTANT)

около 4 лет назад
oracle-oval логотип
ELSA-2021-3891

ELSA-2021-3891: java-11-openjdk security update (IMPORTANT)

около 4 лет назад
suse-cvrf логотип
openSUSE-SU-2021:3770-1

Security update for java-1_8_0-openjdk

около 4 лет назад
suse-cvrf логотип
openSUSE-SU-2021:1500-1

Security update for java-1_8_0-openjdk

около 4 лет назад
suse-cvrf логотип
SUSE-SU-2022:14875-1

Security update for java-1_7_1-ibm

почти 4 года назад
suse-cvrf логотип
SUSE-SU-2022:0166-1

Security update for java-1_7_1-ibm

почти 4 года назад

Уязвимостей на страницу