Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:18949
HistoryMay 16, 2019 - 2:18 a.m.

Improper Access Control

2019-05-1602:18:41
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6

0.003 Low

EPSS

Percentile

71.3%

Oracle Java SE is vulnerable to Improper Access Control vulnerability. This is because the Libraries component of OpenJDK failed to sufficiently limit the amount of memory allocated when reading DER encoded input. A remote attacker could possibly use this flaw to make a Java application use an excessive amount of memory if it parsed attacker supplied DER encoded input resulting unauthorized ability to cause a partial denial of service (DOS) of Java SE, Java SE Embedded and JRockit.

References