First published: Tue Oct 18 2022(Updated: )
An unspecified vulnerability in Java SE related to the Security component could allow an unauthenticated attacker to update, insert or delete data resulting in a low integrity impact using unknown attack vectors.
Credit: secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Cloud Pak for Business Automation | <=V22.0.2 | |
IBM Cloud Pak for Business Automation | <=V21.0.3 - V21.0.3-IF016 | |
IBM Cloud Pak for Business Automation | <=V22.0.1 - V22.0.1-IF006 and later fixes V21.0.2 - V21.0.2-IF012 and later fixesV21.0.1 - V21.0.1-IF007 and later fixesV20.0.1 - V20.0.3 and later fixesV19.0.1 - V19.0.3 and later fixesV18.0.0 - V18.0.2 and later fixes | |
Oracle GraalVM | =20.3.7 | |
Oracle GraalVM | =21.3.3 | |
Oracle GraalVM | =22.2.0 | |
Oracle JDK | =1.8.0-update341 | |
Oracle JDK | =1.8.0-update345 | |
Oracle JDK | =11.0.16.1 | |
Oracle JDK | =17.0.4.1 | |
Oracle JDK | =19 | |
Oracle JRE | =1.8.0-update341 | |
Oracle JRE | =1.8.0-update345 | |
Oracle JRE | =11.0.16.1 | |
Oracle JRE | =17.0.4.1 | |
Oracle JRE | =19 | |
Fedoraproject Fedora | =35 | |
Fedoraproject Fedora | =36 | |
NetApp 7-Mode Transition Tool | ||
Netapp Cloud Insights Acquisition Unit | ||
Netapp Cloud Secure Agent | ||
NetApp E-Series SANtricity OS Controller | >=11.0<11.70.2 | |
NetApp E-Series SANtricity OS Controller | =11.70.2 | |
Netapp E-series Santricity Storage Manager | ||
Netapp E-series Santricity Unified Manager | ||
NetApp OnCommand Insight | ||
NetApp OnCommand Workflow Automation | ||
Netapp Santricity Storage Plugin Vcenter | ||
NetApp SANtricity Web Services Proxy | ||
Azul Zulu | =7.56 | |
Azul Zulu | =8.64 | |
Azul Zulu | =11.58 | |
Azul Zulu | =13.50 | |
Azul Zulu | =15.42 | |
Azul Zulu | =17.36 | |
Azul Zulu | =19.28 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2022-21619.
The affected products are Oracle Java SE (versions 8u341, 8u345-perf, 11.0.16.1, 17.0.4.1, 19) and Oracle GraalVM Enterprise Edition (versions 20.3.7, 21.3.3, and 22.2.0).
The severity of CVE-2022-21619 is low with a severity value of 3.7.
To fix this vulnerability, update to the latest version of Oracle Java SE or Oracle GraalVM Enterprise Edition.
You can find more information about CVE-2022-21619 at the following references: [Reference 1](https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/37QDWJBGEPP65X43NXQTXQ7KASLUHON6/), [Reference 2](https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3ARF4QF4N3X5GSFHXUBWARGLISGKJ33R/), [Reference 3](https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3QLQ7OD33W6LT3HWI7VYDFFJLV75Y73K/).