First published: Mon Jan 17 2022(Updated: )
A flaw was found in the way the BMPImageReader class implementation in the ImageIO component of OpenJDK preformed memory allocations when reading palette information from BMP images. A specially-crafted BMP file could cause a Java application to consume an excessive amount of memory when opened.
Affected Software | Affected Version | How to fix |
---|---|---|
OpenJDK 17 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
REDHAT-BUG-2041491 has been classified as a moderate severity vulnerability due to its potential to cause excessive memory consumption.
To fix REDHAT-BUG-2041491, update to the latest patched version of OpenJDK as recommended by Oracle.
REDHAT-BUG-2041491 affects the OpenJDK 17 version from Oracle.
REDHAT-BUG-2041491 is a memory allocation vulnerability specifically found in the BMPImageReader class of the ImageIO component.
The impact of REDHAT-BUG-2041491 is that it can lead to Java applications consuming excessive memory when handling specially-crafted BMP files.