Lucene search

K
ubuntucveUbuntu.comUB:CVE-2024-23082
HistoryApr 08, 2024 - 12:00 a.m.

CVE-2024-23082

2024-04-0800:00:00
ubuntu.com
ubuntu.com
17
threeten backport v1.6.8
integer overflow
datetimeformatter
parse

AI Score

7.5

Confidence

High

EPSS

0

Percentile

15.5%

DISPUTED ThreeTen Backport v1.6.8 was discovered to contain an
integer overflow via the component
org.threeten.bp.format.DateTimeFormatter::parse(CharSequence,
ParsePosition). NOTE: this is disputed by multiple third parties who
believe there was not reasonable evidence to determine the existence of a
vulnerability. The submission may have been based on a tool that is not
sufficiently robust for vulnerability identification.

AI Score

7.5

Confidence

High

EPSS

0

Percentile

15.5%

Related for UB:CVE-2024-23082