First published: Mon Jul 18 2016(Updated: )
Integer overflow flaws were found in the way the Hotspot component of OpenJDK read bytecode from class files. An untrusted Java application or applet could use this flaw to bypass certain Java sandbox restrictions.
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Build of OpenJDK with Hotspot |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1357506 is rated as critical due to the potential for bypassing Java sandbox restrictions.
To fix REDHAT-BUG-1357506, you should update the OpenJDK Hotspot to the latest patched version.
The vulnerability REDHAT-BUG-1357506 is caused by integer overflow flaws in the Hotspot component of OpenJDK when reading bytecode.
REDHAT-BUG-1357506 can allow untrusted Java applications or applets to bypass certain security restrictions, posing a security risk.
All versions of OpenJDK Hotspot that contain the integer overflow vulnerability are affected by REDHAT-BUG-1357506.