vulnerability
Huawei EulerOS: CVE-2016-3425: java-1.7.0-openjdk security update
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:N/AC:L/Au:N/C:N/I:N/A:P) | Apr 21, 2016 | Nov 30, 2017 | May 13, 2025 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Apr 21, 2016
Added
Nov 30, 2017
Modified
May 13, 2025
Description
It was discovered that the JAXP component in OpenJDK failed to properly handle Unicode surrogate pairs used as part of the XML attribute values. Specially crafted XML input could cause a Java application to use an excessive amount of memory when parsed.
Solutions
huawei-euleros-2_0_sp1-upgrade-java-1.7.0-openjdkhuawei-euleros-2_0_sp1-upgrade-java-1.7.0-openjdk-develhuawei-euleros-2_0_sp1-upgrade-java-1.7.0-openjdk-headless
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.