REDHAT-BUG-1823224: Medium severity openjdk vulnerability
A flaw was found in the Security component of OpenJDK. It was discovered that the unmarshalKeyInfo() method of the DOMKeyInfoFactory class and the unmarshalXMLSignature() method of the DOMXMLSignatureFactory class could raise exceptions not declared as thrown by these methods when reading key info or XML signature data from XML input.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1823224?
The severity of REDHAT-BUG-1823224 is considered to be moderate.
How do I fix REDHAT-BUG-1823224?
To fix REDHAT-BUG-1823224, update your OpenJDK to the latest version provided by the vendor.
Which versions of OpenJDK are affected by REDHAT-BUG-1823224?
All supported versions of OpenJDK that utilize the vulnerable methods are affected by REDHAT-BUG-1823224.
What is the nature of the flaw in REDHAT-BUG-1823224?
The flaw in REDHAT-BUG-1823224 allows exceptions to be raised by certain methods that are not declared as throwable.
Is there a workaround for REDHAT-BUG-1823224?
Currently, the recommended action for REDHAT-BUG-1823224 is to apply the provided updates rather than using a workaround.