Improper resource allocation In java-1.7.0-openjdk
Description
It was discovered that the 2D component of OpenJDK performed parsing of iTXt and zTXt PNG image chunks even when configured to ignore metadata. An attacker able to make a Java application parse a specially crafted PNG image could cause the application to consume an excessive amount of memory.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
rpm rhel7 | 1:1.7.0.131-2.6.9.0.el7_3 | ||
rpm rhel5 | 1:1.7.0.131-2.6.9.0.el5_11 | ||
rpm rhel7 | 1:1.8.0.121-0.b13.el7_3 | ||
rpm rhel6 | 1:1.8.0.121-0.b13.el6_8 | ||
rpm rhel6 | 1:1.7.0.131-2.6.9.0.el6_8 |
Aliases
1. 2. 3.