First published: Thu Apr 26 2018(Updated: )
Google Guava is vulnerable to a denial of service, caused by improper eager allocation checks in the AtomicDoubleArray and CompoundOrdering class. By sending a specially-crafted data, a remote attacker could exploit this vulnerability to cause a denial of service condition.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google Guava | >=11.0<24.1.1 | |
Redhat Openshift Container Platform | =3.11 | |
Redhat Openstack | =13 | |
Redhat Satellite | =6.4 | |
Redhat Satellite Capsule | =6.4 | |
Redhat Virtualization | =4.2 | |
Redhat Virtualization Host | =4.0 | |
Redhat Jboss Enterprise Application Platform | =6.0.0 | |
Redhat Jboss Enterprise Application Platform | =6.4.0 | |
Redhat Jboss Enterprise Application Platform | =7.1.0 | |
Redhat Openshift Container Platform | =4.1 | |
Redhat Virtualization | =4.0 | |
Redhat Enterprise Linux | =7.0 | |
Redhat Enterprise Linux | =5.0 | |
Redhat Enterprise Linux | =6.0 | |
Oracle Banking Payments | >=14.1.0<=14.4.0 | |
Oracle Communications Ip Service Activator | =7.3.0 | |
Oracle Communications Ip Service Activator | =7.4.0 | |
Oracle Customer Management And Segmentation Foundation | =18.0 | |
Oracle Database Server | =12.2.0.1 | |
Oracle Database Server | =18c | |
Oracle Database Server | =19c | |
Oracle FLEXCUBE Investor Servicing | =12.1.0 | |
Oracle FLEXCUBE Investor Servicing | =12.3.0 | |
Oracle FLEXCUBE Investor Servicing | =12.4.0 | |
Oracle FLEXCUBE Investor Servicing | =14.0.0 | |
Oracle FLEXCUBE Investor Servicing | =14.1.0 | |
Oracle FLEXCUBE Private Banking | =12.0.0 | |
Oracle FLEXCUBE Private Banking | =12.1.0 | |
Oracle Retail Integration Bus | =15.0 | |
Oracle Retail Integration Bus | =16.0 | |
Oracle Retail Xstore Point of Service | =7.1 | |
Oracle Retail Xstore Point of Service | =15.0 | |
Oracle Retail Xstore Point of Service | =16.0 | |
Oracle Retail Xstore Point of Service | =17.0 | |
Oracle WebLogic Server | =12.2.1.3.0 | |
maven/com.google.guava:guava | >=11.0<24.1.1-android | 24.1.1-android |
maven/org.sonatype.sisu:sisu-guava | =0.11.1 | |
maven/org.hudsonci.lib.guava:guava | <=14.0.1-h-3 | |
maven/de.mhus.ports:vaadin-shared-deps | <=7.4.0 | |
maven/com.googlecode.guava-osgi:guava-osgi | <=11.0.1 | |
maven/com.google.guava:guava-jdk5 | <=17.0 | |
redhat/guava | <24.1.1 | 24.1.1 |
redhat/guava | <25.0 | 25.0 |
IBM GDE | <=3.0.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.