A flaw in the java.math component in IBM SDK, Java Technology Edition 6.0, 7.0, and 8.0 may allow an attacker to inflict a denial-of-service attack with specially crafted String data. IBM X-Force ID: 141681.
Loading...
Loading...
Score 7.5 from GitHub Security Advisory (severity: HIGH) published 2022-05-13. NVD baseline CVSS 5.9; sources differ by 1.6.
A flaw in the java.math component in IBM SDK, Java Technology Edition 6.0, 7.0, and 8.0 may allow an attacker to inflict a denial-of-service attack with specially crafted String data. IBM X-Force ID: 141681.
August 20, 2018
November 21, 2024
| Vendor / Ecosystem | Fixed in / Patch | Released | Source |
|---|---|---|---|
| redhat | java-1.7.1-ibm-1:1.7.1.4.30-1jpp.2.el6_10 | 2018-09-17 | redhat |
| redhat | java-1.8.0-ibm-1:1.8.0.5.20-1jpp.1.el6_10 | 2018-09-17 | redhat |
| redhat | java-1.8.0-ibm-1:1.8.0.5.20-1jpp.1.el7 | 2018-08-27 | redhat |
| redhat | java-1.7.1-ibm-1:1.7.1.4.30-1jpp.1.el7 | 2018-08-27 | redhat |
Patches are aggregated from vendor advisories (Red Hat, Microsoft, Cisco, GitHub) and package ecosystems (OSV, GHSA). Multiple rows for the same upstream release have been deduplicated.
MITRE Common Weakness Enumeration — the root-cause categories this CVE belongs to.
Every vendor that published an advisory referencing this CVE — pulled from our cve_vendor_advisories aggregation. Click any row for the vendor's original advisory page.
RHSA-2018:2568 — Moderate
RHSA-2018:2569 — Moderate
RHSA-2018:2575 — Moderate
RHSA-2018:2576 — Moderate
RHSA-2018:2712 — Moderate
RHSA-2018:2713 — Moderate
Each row is a source pipeline that fetched or updated this CVE on that date, with what changed. For example, "NVD update" means NVD published or revised its analysis for this CVE; "MITRE cvelistV5" means we ingested or refreshed it from the CNA feed. Most recent first.
See which npm, PyPI, Go, and Maven packages are affected by CVE-2018-1517
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.
redhat
CWE-20