Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:20907
HistoryJul 29, 2019 - 12:08 a.m.

Denial Of Service (DoS)

2019-07-2900:08:03
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
17

0.002 Low

EPSS

Percentile

57.9%

openjdk is vulnerable to denial of service. It was discovered that the implementation of the Throwable class in the Utilities component of OpenJDK did not sufficiently validate serial stream before deserializing suppressed exceptions. A specially-crafted input could cause a Java application to construct inconsistent object and possibly use an excessive amount of system resources when deserialized.