First published: Fri Oct 11 2019(Updated: )
A flaw was found in the way the Jar URL handler in the Networking component in OpenJDK handled URLs with nested jar: URLs. A specially crafted URL could cause Java application to exit when parsed.
Affected Software | Affected Version | How to fix |
---|---|---|
OpenJDK |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1761006 is classified as moderate due to its potential to cause application crashes.
You can mitigate REDHAT-BUG-1761006 by updating to a fixed version of the OpenJDK software where the vulnerability has been addressed.
REDHAT-BUG-1761006 affects multiple versions of OpenJDK that utilize the jar URL handler.
An attacker could exploit REDHAT-BUG-1761006 by crafting a malicious jar URL that induces an application crash.
Symptoms of an exploit of REDHAT-BUG-1761006 may include unexpected application exits or crashes when processing jar URLs.