Improper authorization control for web services In java-1.8.0-ibm
Description
From Eclipse OpenJ9 0.15 to 0.16, access to diagnostic operations such as causing a GC or creating a diagnostic file are permitted without any privilege checks.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
rpm rhel8 | 1:1.8.0.6.0-3.el8_1 |
Aliases
1. 2. 3.