First published: Fri Apr 15 2022(Updated: )
An unspecified vulnerability in Java SE related to the Libraries component could allow an unauthenticated attacker to cause no confidentiality impact, high integrity impact, and no availability impact.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/java | <17-openjdk-1:17.0.3.0.6-2.el8_5 | 17-openjdk-1:17.0.3.0.6-2.el8_5 |
redhat/java | <17-openjdk-1:17.0.3.0.7-1.el9_0 | 17-openjdk-1:17.0.3.0.7-1.el9_0 |
debian/openjdk-17 | 17.0.7+7-1~deb11u1 17.0.8+7-1~deb12u1 17.0.9+9-1 | |
IBM Cognos Command Center | <=10.2.4.1 | |
Oracle GraalVM Enterprise Edition | =21.3.1 | |
Oracle GraalVM Enterprise Edition | =22.0.0.2 | |
Oracle JDK 6 | =17.0.2 | |
Oracle JDK 6 | =18 | |
Debian Debian Linux | =10.0 | |
Debian Debian Linux | =11.0 | |
NetApp 7-Mode Transition Tool | ||
netapp active iq unified manager vsphere | ||
netapp active iq unified manager windows | ||
netapp cloud insights | ||
NetApp E-Series SANtricity OS Controller | =11.0 | |
netapp e-series santricity storage manager | ||
netapp e-series santricity web services | ||
NetApp OnCommand Insight | ||
NetApp OnCommand Workflow Automation | ||
netapp santricity unified manager | ||
netapp solidfire\, enterprise sds \& hci storage node | ||
netapp solidfire \& hci management node | ||
netapp hci compute node | ||
azul zulu | =15.38 | |
azul zulu | =17.32 | |
azul zulu | =18.28 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
The vulnerability ID for this Java SE vulnerability is CVE-2022-21449.
The severity of CVE-2022-21449 is high, with a severity value of 7.5.
Oracle Java SE versions 17.0.2 and 18 are affected by CVE-2022-21449.
Oracle GraalVM Enterprise Edition versions 21.3.1 and 22.0.0.2 are affected by CVE-2022-21449.
To fix CVE-2022-21449, update to Oracle Java SE version 17.0.3.0.6-2.el8_5 or higher, or apply the necessary patches provided by your software vendor.