Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:13063
HistoryJan 15, 2019 - 9:25 a.m.

Sandbox Restrictions Bypass

2019-01-1509:25:21
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.002 Low

EPSS

Percentile

64.8%

openjdk is vulnerable to sandbox restrictions bypass. The security component of OpenJDK incorrectly uses unsigned manifest attribute entries. This allows an attacker and an untrusted Java application or applet to bypass the protections provided by Jar signing.

References