REDHAT-BUG-2274975: Low severity openjdk 8 vulnerability
It was found that the ConnectionPool class implementation in the Networking/HTTP client component of OpenJDK improperly performs a reverse DNS query if the passed argument is an IP address, potentially sending a request over the wrong connection under certain conditions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2274975?
The severity of REDHAT-BUG-2274975 is critical due to the potential exposure to incorrect connection handling.
How do I fix REDHAT-BUG-2274975?
To fix REDHAT-BUG-2274975, you should update to the latest patch of OpenJDK as indicated in the security advisory.
Which versions of OpenJDK are affected by REDHAT-BUG-2274975?
REDHAT-BUG-2274975 affects OpenJDK 17 as identified in the vulnerability description.
What are the potential risks of REDHAT-BUG-2274975?
The potential risks of REDHAT-BUG-2274975 include incorrect connection routing which could lead to data exposure or interception.
Is there a known exploit for REDHAT-BUG-2274975?
As of now, there are no known exploits for REDHAT-BUG-2274975, but it is recommended to address the vulnerability promptly.