Oracle / Java
179 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2020-2659 | OpenJDK: Incomplete enforcement of maxDatagramSockets limit in DatagramChannelImpl (Networking, 8231795) | LOW | 3.7 | Jan 15, 2020 |
| CVE-2020-2655 | OpenJDK: Incorrect handling of unexpected CertificateVerify TLS handshake messages (JSSE, 8231780) | MEDIUM | 4.8 | Jan 15, 2020 |
| CVE-2020-2654 | OpenJDK: Excessive memory usage in OID processing in X.509 certificate parsing (Libraries, 8234037) | LOW | 3.7 | Jan 15, 2020 |
| CVE-2020-2604 | OpenJDK: Serialization filter changes via jdk.serialFilter property modification (Serialization, 8231422) | HIGH | 8.1 | Jan 15, 2020 |
| CVE-2020-2601 | OpenJDK: Use of unsafe RSA-MD5 checksum in Kerberos TGS (Security, 8229951) | MEDIUM | 6.8 | Jan 15, 2020 |
| CVE-2020-2593 | OpenJDK: Incorrect isBuiltinStreamHandler check causing URL normalization issues (Networking, 8228548) | MEDIUM | 4.8 | Jan 15, 2020 |
| CVE-2020-2590 | OpenJDK: Improper checks of SASL message properties in GssKrb5Base (Security, 8226352) | LOW | 3.7 | Jan 15, 2020 |
| CVE-2020-2585 | JDK: unspecified vulnerability fixed in 8u221 (JavaFX) | MEDIUM | 5.9 | Jan 15, 2020 |
| CVE-2020-2583 | OpenJDK: Incorrect exception processing during deserialization in BeanContextSupport (Serialization, 8224909) | LOW | 3.7 | Jan 15, 2020 |
| CVE-2019-2999 | OpenJDK: Insufficient filtering of HTML event attributes in Javadoc (Javadoc, 8226765) | MEDIUM | 4.7 | Oct 16, 2019 |
| CVE-2019-2996 | JDK: unspecified vulnerability fixed in 8u221 (Deployment) | MEDIUM | 4.2 | Oct 16, 2019 |
| CVE-2019-2992 | OpenJDK: Excessive memory allocation in CMap when reading TrueType font (2D, 8225597) | LOW | 3.7 | Oct 16, 2019 |
| CVE-2019-2989 | OpenJDK: Incorrect handling of HTTP proxy responses in HttpURLConnection (Networking, 8225298) | MEDIUM | 6.8 | Oct 16, 2019 |
| CVE-2019-2988 | OpenJDK: Integer overflow in bounds check in SunGraphics2D (2D, 8225292) | LOW | 3.7 | Oct 16, 2019 |
| CVE-2019-2987 | OpenJDK: Missing glyph bitmap image dimension check in FreetypeFontScaler (2D, 8225286) | LOW | 3.7 | Oct 16, 2019 |
| CVE-2019-2983 | OpenJDK: Unexpected exception thrown during Font object deserialization (Serialization, 8224915) | LOW | 3.7 | Oct 16, 2019 |
| CVE-2019-2981 | OpenJDK: Unexpected exception thrown by XPath processing crafted XPath expression (JAXP, 8224532) | LOW | 3.7 | Oct 16, 2019 |
| CVE-2019-2978 | OpenJDK: Incorrect handling of nested jar: URLs in Jar URL handler (Networking, 8223892) | LOW | 3.7 | Oct 16, 2019 |
| CVE-2019-2977 | OpenJDK: Out of bounds access in optimized String indexof implementation (Hotspot, 8224062) | MEDIUM | 4.8 | Oct 16, 2019 |
| CVE-2019-2975 | OpenJDK: Unexpected exception thrown during regular expression processing in Nashorn (Scripting, 8223518) | MEDIUM | 4.8 | Oct 16, 2019 |
| CVE-2019-2973 | OpenJDK: Unexpected exception thrown by XPathParser processing crafted XPath expression (JAXP, 8223505) | LOW | 3.7 | Oct 16, 2019 |
| CVE-2019-2964 | OpenJDK: Unexpected exception thrown by Pattern processing crafted regular expression (Concurrency, 8222684) | LOW | 3.7 | Oct 16, 2019 |
| CVE-2019-2962 | OpenJDK: NULL pointer dereference in DrawGlyphList (2D, 8222690) | LOW | 3.7 | Oct 16, 2019 |
| CVE-2019-2958 | OpenJDK: Incorrect escaping of command line arguments in ProcessImpl on Windows (Libraries, 8221858) | MEDIUM | 5.9 | Oct 16, 2019 |
| CVE-2019-2949 | OpenJDK: Improper handling of Kerberos proxy credentials (Kerberos, 8220302) | MEDIUM | 6.8 | Oct 16, 2019 |
Showing 26 to 50 of 179 CVEs