ZeroHour

CVE-2019-10245

CVSS 3.1
7.5 high
EPSS
2%p84
Published
()
Modified
Description

In Eclipse OpenJ9 prior to the 0.14.0 release, the Java bytecode verifier incorrectly allows a method to execute past the end of bytecode array causing crashes. Eclipse OpenJ9 v0.14.0 correctly detects this case and rejects the attempted class load.

Vendors
eclipseredhat
Products
openj9, satellite, enterprise linux, enterprise linux desktop, enterprise linux server, enterprise linux workstation
Weakness
CWE-20, CWE-119
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.