VYPR

rpm package

opensuse/java-17-openj9&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/java-17-openj9&distro=openSUSE%20Tumbleweed

Vulnerabilities (50)

  • CVE-2023-21930HigApr 18, 2023
    affected < 17.0.8.0-1.1fixed 17.0.8.0-1.1

    Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 8u361, 8u361-perf, 11.0.18, 17.0.6, 20; Oracle GraalVM Enterprise Edition: 20.3.9, 21.3.5 and 22.3.1. Dif

  • CVE-2023-25193HigFeb 4, 2023
    affected < 17.0.8.0-1.1fixed 17.0.8.0-1.1

    hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via consecutive marks during the process of looking back for base glyphs when attaching marks.

  • CVE-2023-21843LowJan 18, 2023
    affected < 17.0.6.0-1.1fixed 17.0.6.0-1.1

    Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Sound). Supported versions that are affected are Oracle Java SE: 8u351, 8u351-perf, 11.0.17, 17.0.5, 19.0.1; Oracle GraalVM Enterprise Edition: 20.3.8, 21.3.4 and 22.3.0

  • CVE-2023-21835MedJan 18, 2023
    affected < 17.0.6.0-1.1fixed 17.0.6.0-1.1

    Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 11.0.17, 17.0.5, 19.0.1; Oracle GraalVM Enterprise Edition: 20.3.8, 21.3.4 and 22.3.0. Easily exploitable

  • CVE-2022-3676MedOct 24, 2022
    affected < 17.0.5.0-1.1fixed 17.0.5.0-1.1

    In Eclipse Openj9 before version 0.35.0, interface calls can be inlined without a runtime type check. Malicious bytecode could make use of this inlining to access or modify memory via an incompatible type.

  • CVE-2022-21628MedOct 18, 2022
    affected < 17.0.5.0-1.1fixed 17.0.5.0-1.1

    Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Lightweight HTTP Server). Supported versions that are affected are Oracle Java SE: 8u341, 8u345-perf, 11.0.16.1, 17.0.4.1, 19; Oracle GraalVM Enterprise Edition: 20.3.7, 2

  • CVE-2022-21626MedOct 18, 2022
    affected < 17.0.5.0-1.1fixed 17.0.5.0-1.1

    Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u341, 8u345-perf, 11.0.16.1; Oracle GraalVM Enterprise Edition: 20.3.7, 21.3.3 and 22.2.0. Easily expl

  • CVE-2022-21618MedOct 18, 2022
    affected < 17.0.5.0-1.1fixed 17.0.5.0-1.1

    Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JGSS). Supported versions that are affected are Oracle Java SE: 17.0.4.1, 19; Oracle GraalVM Enterprise Edition: 21.3.3 and 22.2.0. Easily exploitable vulnerability allows

  • CVE-2022-21549MedJul 19, 2022
    affected < 17.0.4.0-1.1fixed 17.0.4.0-1.1

    Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 17.0.3.1; Oracle GraalVM Enterprise Edition: 21.3.2 and 22.1.0. Easily exploitable vulnerability allow

  • CVE-2022-21540MedJul 19, 2022
    affected < 17.0.4.0-1.1fixed 17.0.4.0-1.1

    Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u343, 8u333, 11.0.15.1, 17.0.3.1, 18.0.1.1; Oracle GraalVM Enterprise Edition: 20.3.6, 21.3.2 and 22.1.

Page 3 of 3