Eclipse Openj9 vulnerabilities
23 known vulnerabilities affecting eclipse/openj9.
Total CVEs
23
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL10HIGH7MEDIUM6
Vulnerabilities
Page 2 of 2
CVE-2021-41041P4MEDIUMCVSS 5.3fixed in 0.32.02022-04-27
CVE-2021-41041 [MEDIUM] CWE-252 CVE-2021-41041: In Eclipse Openj9 before version 0.32.0, Java 8 & 11 fail to throw the exception captured during byt
In Eclipse Openj9 before version 0.32.0, Java 8 & 11 fail to throw the exception captured during bytecode verification when verification is triggered by a MethodHandle invocation, allowing unverified methods to be invoked using MethodHandles.
nvd
CVE-2023-5676P4MEDIUMCVSS 5.9fixed in 0.41.02023-11-15
CVE-2023-5676 [MEDIUM] CWE-364 CVE-2023-5676: In Eclipse OpenJ9 before version 0.41.0, the JVM can be forced into an infinite busy hang on a spinl
In Eclipse OpenJ9 before version 0.41.0, the JVM can be forced into an infinite busy hang on a spinlock or a segmentation fault if a shutdown signal (SIGTERM, SIGINT or SIGHUP) is received before the JVM has finished initializing.
nvd
CVE-2024-10917P4MEDIUMCVSS 5.3≥ 0.8.0, < 0.48.02024-11-11
CVE-2024-10917 [MEDIUM] CWE-190 CVE-2024-10917: In Eclipse OpenJ9 versions up to 0.47, the JNI function GetStringUTFLength may return an incorrect v
In Eclipse OpenJ9 versions up to 0.47, the JNI function GetStringUTFLength may return an incorrect value which has wrapped around. From 0.48 the value is correct but may be truncated to include a smaller number of characters.
nvd
← Previous2 / 2