Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:14102
HistoryMay 02, 2019 - 4:44 a.m.

Sandbox Restrictions Bypass

2019-05-0204:44:37
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
5

0.925 High

EPSS

Percentile

99.0%

OpenJDK 7 Java Runtime Environment and the OpenJDK 7 Software Development Kit is vulnerable to sandbox restriction bypass. JDBC driver manager could incorrectly call toString() method in JDBC drivers, and the ConcurrentHashMap class could incorrectly call the defaultReadObject() method. Using this flaw, an untrusted application can bypass sandbox restriction.

References