Lucene search

K
oraclelinuxOracleLinuxELSA-2024-4564
HistorySep 09, 2024 - 12:00 a.m.

java-11-openjdk security update

2024-09-0900:00:00
linux.oracle.com
3
java 11 openjdk
security update
cve-2024-21131
utf8 string
better symbol storage
malformed control flow
openjdk bug8303466
improved loop handling
pack 200 loading
2d image handling
array management
unix

CVSS3

7.4

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

AI Score

7.3

Confidence

Low

[1:11.0.23.0.9-2.0.3]

  • Fixes below CVE’s
  • CVE-2024-21131 Improve-UTF8-String-supports
  • CVE-2024-21138 Better-symbol-storage
  • Fixes malformed control flow openjdk bug8303466
  • CVE-2024-21140 Improved-loop-handling
  • CVE-2024-21144 Enhance-Pack-200-loading
  • CVE-2024-21145 Improve-2D-image-handling
  • CVE-2024-21147 Improve-array-management

CVSS3

7.4

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

AI Score

7.3

Confidence

Low