Lucene search

K
vulnrichmentMitreVULNRICHMENT:CVE-2024-23082
HistoryApr 08, 2024 - 12:00 a.m.

CVE-2024-23082

2024-04-0800:00:00
mitre
github.com
6
integer overflow
threeten backport v1.6.8
datetimeformatter
parseposition
disputed vulnerability

AI Score

7.6

Confidence

High

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial

ThreeTen Backport v1.6.8 was discovered to contain an integer overflow via the component org.threeten.bp.format.DateTimeFormatter::parse(CharSequence, ParsePosition). NOTE: this is disputed by multiple third parties who believe there was not reasonable evidence to determine the existence of a vulnerability. The submission may have been based on a tool that is not sufficiently robust for vulnerability identification.

AI Score

7.6

Confidence

High

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial

Related for VULNRICHMENT:CVE-2024-23082