CVE-2018-1417
22.02.2018, 19:29
Under certain circumstances, a flaw in the J9 JVM (IBM SDK, Java Technology Edition 7.1 and 8.0) allows untrusted code running under a security manager to elevate its privileges. IBM X-Force ID: 138823.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ibm | java_sdk | 6.0.0.0 |
| ibm | java_sdk | 6.1.0.0 |
| ibm | java_sdk | 7.0.0.0 |
| ibm | java_sdk | 7.1.0.0 |
| ibm | java_sdk | 8.0.0.0 |
𝑥
= Vulnerable software versions
Red Hat Enterprise Linux Releases
Red Hat Product | |||||
|---|---|---|---|---|---|
| java-1.7.1-ibm |
| ||||
| java-1.7.1-ibm-demo |
| ||||
| java-1.7.1-ibm-devel |
| ||||
| java-1.7.1-ibm-jdbc |
| ||||
| java-1.7.1-ibm-plugin |
| ||||
| java-1.7.1-ibm-src |
| ||||
| java-1.8.0-ibm |
| ||||
| java-1.8.0-ibm-demo |
| ||||
| java-1.8.0-ibm-devel |
| ||||
| java-1.8.0-ibm-jdbc |
| ||||
| java-1.8.0-ibm-plugin |
| ||||
| java-1.8.0-ibm-src |
|
Common Weakness Enumeration
References