vulnerability

Huawei EulerOS: CVE-2017-3253: java-1.7.0-openjdk security update

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Jan 27, 2017
Added
Nov 30, 2017
Modified
Apr 25, 2025

Description

It was discovered that the 2D component of OpenJDK performed parsing of iTXt and zTXt PNG image chunks even when configured to ignore metadata. An attacker able to make a Java application parse a specially crafted PNG image could cause the application to consume an excessive amount of memory.

Solutions

huawei-euleros-2_0_sp2-upgrade-java-1.7.0-openjdkhuawei-euleros-2_0_sp2-upgrade-java-1.7.0-openjdk-develhuawei-euleros-2_0_sp2-upgrade-java-1.7.0-openjdk-headless
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.