CVE-2023-38264
14.05.2024, 13:21
The IBM SDK, Java Technology Edition's Object Request Broker (ORB) 7.1.0.0 through 7.1.5.21 and 8.0.0.0 through 8.0.8.21 is vulnerable to a denial of service attack in some circumstances due to improper enforcement of the JEP 290 MaxRef and MaxDepth deserialization filters. IBM X-Force ID: 260578.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | java_software_development_kit | 7.1.0.0 ≤ 𝑥 < 7.1.5.22 |
ibm | java_software_development_kit | 8.0.0.0 ≤ 𝑥 < 8.0.8.25 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration