CVE-2021-41041

Updated: 2023-11-04 20:28:55.544904

Description:

In Eclipse Openj9 before version 0.32.0, Java 8 & 11 fail to throw the exception captured during bytecode verification when verification is triggered by a MethodHandle invocation, allowing unverified methods to be invoked using MethodHandles.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x MEDIUM 5
CVSS Version 3.x MEDIUM 5.3

Status

OS name Project name Version Score Severity Status Errata Last updated
CentOS 7 ELS java-1.8.0-openjdk 1.8.0 5.3 MEDIUM Not Vulnerable 2023-11-29 13:10:45
Ubuntu 16.04 ELS openjdk-8 8 5.3 MEDIUM Ignored 2022-05-05 21:51:53
Ubuntu 18.04 ELS openjdk-8 8 5.3 MEDIUM Ignored 2023-07-05 05:06:46