vulnerability
Huawei EulerOS: CVE-2017-3253: java-1.7.0-openjdk security update
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:N/AC:L/Au:N/C:N/I:N/A:P) | Jan 27, 2017 | Nov 30, 2017 | Apr 25, 2025 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Jan 27, 2017
Added
Nov 30, 2017
Modified
Apr 25, 2025
Description
It was discovered that the 2D component of OpenJDK performed parsing of iTXt and zTXt PNG image chunks even when configured to ignore metadata. An attacker able to make a Java application parse a specially crafted PNG image could cause the application to consume an excessive amount of memory.
Solutions
huawei-euleros-2_0_sp2-upgrade-java-1.7.0-openjdkhuawei-euleros-2_0_sp2-upgrade-java-1.7.0-openjdk-develhuawei-euleros-2_0_sp2-upgrade-java-1.7.0-openjdk-headless
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.