First published: Mon Jan 15 2018(Updated: )
A use-after-free flaw was found in the way the AWT component of OpenJDK performed loading of the GTK library. An untrusted Java application or applet could use this flaw to possibly bypass certain Java sandbox restrictions.
Affected Software | Affected Version | How to fix |
---|---|---|
OpenJDK 17 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1534766 is classified as moderate due to its potential to bypass Java sandbox restrictions.
To fix REDHAT-BUG-1534766, you should update to the latest patched version of OpenJDK provided by your vendor.
REDHAT-BUG-1534766 affects the Oracle OpenJDK, specifically OpenJDK 17 and its implementations.
REDHAT-BUG-1534766 addresses a use-after-free flaw that could allow untrusted Java applications to bypass sandbox restrictions.
There are no recommended workarounds for REDHAT-BUG-1534766; applying the fix is strongly advised.