USN-3942-1: OpenJDK 7 vulnerability
Published Apr 9, 2019
·Updated
It was discovered that a memory disclosure issue existed in the OpenJDK Library subsystem. An attacker could use this to expose sensitive information and possibly bypass Java sandbox restrictions.
Affected Software
1 affected component
OpenJDK OpenJDK 7
Event History
Feb 24, 2026
Advisory Published
via Ubuntu·03:40 PM
Data Sourced
via Ubuntu·03:40 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this OpenJDK 7 vulnerability?
The vulnerability ID for this OpenJDK 7 vulnerability is CVE-2019-2422.
2
What is the severity of this vulnerability?
The severity of this vulnerability is not specified in the provided information.
3
How can an attacker exploit this vulnerability?
An attacker can exploit this vulnerability to expose sensitive information and possibly bypass Java sandbox restrictions.
4
Which versions of OpenJDK 7 are affected by this vulnerability?
Versions up to and excluding 7u211-2.6.17-0ubuntu0.1 are affected by this vulnerability.
5
How can I fix this vulnerability?
To fix this vulnerability, update OpenJDK 7 to version 7u211-2.6.17-0ubuntu0.1 or later.