In Eclipse OpenJ9 before version 0.41.0, the JVM can be forced into an infinite busy hang on a spinlock or a segmentation fault if a shutdown signal (SIGTERM, SIGINT or SIGHUP) is received before the JVM has finished initializing.
References
Link | Resource |
---|---|
https://github.com/eclipse-openj9/openj9/pull/18085 | Issue Tracking Patch |
https://gitlab.eclipse.org/security/cve-assignement/-/issues/13 | Vendor Advisory |
Configurations
History
22 Nov 2023, 22:39
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:eclipse:openj9:*:*:*:*:*:*:*:* | |
First Time |
Eclipse openj9
Eclipse |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.9 |
References | () https://github.com/eclipse-openj9/openj9/pull/18085 - Issue Tracking, Patch | |
References | () https://gitlab.eclipse.org/security/cve-assignement/-/issues/13 - Vendor Advisory | |
CWE | CWE-362 |
15 Nov 2023, 14:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-11-15 14:15
Updated : 2024-02-28 20:54
NVD link : CVE-2023-5676
Mitre link : CVE-2023-5676
CVE.ORG link : CVE-2023-5676
JSON object : View
Products Affected
eclipse
- openj9