REDHAT-BUG-1823200: Low severity OpenJDK Nashorn JavaScript engine vulnerability
A flaw was found in the Nashorn JavaScript engine in the Scripting component of OpenJDK. The state machine of the regular expression Parser did not correctly handle empty string nodes in certain cases, which could cause an unexpected exception to be raised when processing a specially crafted regular expression.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1823200?
The severity of REDHAT-BUG-1823200 is considered moderate due to the potential for unexpected exceptions in the Nashorn JavaScript engine.
How do I fix REDHAT-BUG-1823200?
To fix REDHAT-BUG-1823200, update to the latest version of the OpenJDK Nashorn JavaScript engine that contains the patch for this issue.
What software is affected by REDHAT-BUG-1823200?
REDHAT-BUG-1823200 affects the Nashorn JavaScript engine in OpenJDK.
What is the main issue with REDHAT-BUG-1823200?
The main issue with REDHAT-BUG-1823200 is that the regular expression parser in Nashorn does not handle empty string nodes correctly, leading to raised exceptions.
When was REDHAT-BUG-1823200 reported?
REDHAT-BUG-1823200 was reported in early 2020, highlighting vulnerabilities in the Nashorn JavaScript engine.