[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250363

 
 

909

 
 

196124

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2017-10345 -- openjdk-9-jdk, openjdk-6-jdk

Deprecated
ID: oval:org.secpod.oval:def:1900180Date: (C)2019-03-22   (M)2023-12-26
Class: VULNERABILITYFamily: unix




Francesco Palmarini, Marco Squarcina, Mauro Tempesta, and RiccardoFocardi discovered that the Serialization component of OpenJDK did not properly restrict the amount of memory allocated when deserializingobjects from Java Cryptography Extension KeyStore . An attacker could use this to cause a denial of service .

Platform:
Ubuntu 16.04
Ubuntu 14.04
Product:
openjdk-9-jdk
openjdk-6-jdk
Reference:
CVE-2017-10345
CVE    1
CVE-2017-10345
CPE    4
cpe:/o:ubuntu:ubuntu_linux:16.04
cpe:/o:ubuntu:ubuntu_linux:14.04
cpe:/a:oracle:openjdk-6-jdk
cpe:/a:oracle:openjdk-9-jdk
...

© SecPod Technologies