[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250053

 
 

909

 
 

195940

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2-2019-1246 --- java-11-amazon-corretto

ID: oval:org.secpod.oval:def:1700193Date: (C)2019-07-25   (M)2024-04-17
Class: PATCHFamily: unix




OpenJDK: Insufficient restriction of privileges in AccessController OpenJDK: Unbounded memory allocation during deserialization in Collections libpng: png_image_free in png.c in libpng has a use-after-free because png_image_free_function is called under png_safe_execute. OpenJDK: Insufficient checks of suppressed exceptions in deserialization OpenJDK: Insufficient permission checks for file:// URLs on Windows OpenJDK: Non-constant time comparison in ChaCha20Cipher OpenJDK: Missing URL format validation OpenJDK: Side-channel attack risks in Elliptic Curve cryptography OpenJDK: Incorrect handling of certificate status messages during TLS handshake

Platform:
Amazon Linux 2
Product:
java-11-amazon-corretto
Reference:
ALAS2-2019-1246
CVE-2019-2786
CVE-2019-2769
CVE-2019-2762
CVE-2019-2766
CVE-2019-2818
CVE-2019-2821
CVE-2019-2745
CVE-2019-7317
CVE-2019-2816
CVE    9
CVE-2019-2745
CVE-2019-2766
CVE-2019-2821
CVE-2019-2816
...
CPE    2
cpe:/a:amazon:java-11-amazon-corretto
cpe:/o:amazon:linux:2

© SecPod Technologies