Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:20911
HistoryJul 29, 2019 - 12:08 a.m.

Denial Of Service (DoS)

2019-07-2900:08:04
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.002 Low

EPSS

Percentile

55.5%

openjdk is vulnerable to denial of service. It was discovered that crypto provider implementations in the JCE component of OpenJDK for crypto algorithms such as AES or SHA did not perform array bounds checks. This can lead to out-of-bounds access if compiler intrinsics were used instead of the Java runtime implementations of the specific operations.