First published: Sun Apr 14 2024(Updated: )
A flaw was found in the C2 compiler in the Hotspot component of OpenJDK. C2 compilation fails with "Exceeded _node_regs array" due to an improper size validation and out-of-bounds array access, potentially resulting in a corruption of the JVM memory. Upstream OpenJDK issue: <a href="https://bugs.openjdk.org/browse/JDK-8317507">https://bugs.openjdk.org/browse/JDK-8317507</a>
Credit: secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/openjdk-11 | 11.0.24+8-2~deb11u1 11.0.25+9-1~deb11u1 11.0.25+9-1 | |
debian/openjdk-17 | 17.0.12+7-2~deb11u1 17.0.13+11-1~deb11u1 17.0.13+11-2~deb12u1 17.0.13+11-2 | |
debian/openjdk-21 | 21.0.5+11-1 | |
debian/openjdk-8 | 8u432-b06-2 | |
IBM Sterling Secure Proxy | <=6.0.0.06.0.1.06.0.2.06.0.3.0 | |
IBM Sterling Secure Proxy | <=6.1.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.