The Eclipse Foundation Eclipse Omr vulnerabilities
3 known vulnerabilities affecting the_eclipse_foundation/eclipse_omr.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH2
Vulnerabilities
Page 1 of 1
CVE-2021-41035CRITICALCVSS 9.8≥ unspecified, < 0.29.02021-10-25
CVE-2021-41035 [CRITICAL] CWE-250 CVE-2021-41035: In Eclipse Openj9 before version 0.29.0, the JVM does not throw IllegalAccessError for MethodHandles
In Eclipse Openj9 before version 0.29.0, the JVM does not throw IllegalAccessError for MethodHandles that invoke inaccessible interface methods.
cvelistv5nvd
CVE-2019-11773HIGHCVSS 7.8≥ unspecified, < 0.12019-09-12
CVE-2019-11773 [HIGH] CWE-264 CVE-2019-11773: Prior to 0.1, AIX builds of Eclipse OMR contain unused RPATHs which may facilitate code injection an
Prior to 0.1, AIX builds of Eclipse OMR contain unused RPATHs which may facilitate code injection and privilege elevation by local users.
cvelistv5nvd
CVE-2019-11774HIGHCVSS 7.4≥ unspecified, < 0.12019-09-12
CVE-2019-11774 [HIGH] CWE-367 CVE-2019-11774: Prior to 0.1, all builds of Eclipse OMR contain a bug where the loop versioner may fail to privatize
Prior to 0.1, all builds of Eclipse OMR contain a bug where the loop versioner may fail to privatize a value that is pulled out of the loop by versioning - for example if there is a condition that is moved out of the loop that reads a field we may not privatize the value of that field in the modified copy of the loop allowing the test to see one value
cvelistv5nvd