A flaw in the IBM J9 VM class verifier allows untrusted code to disable the security manager and elevate its privileges. IBM X-Force ID: 126873.
The product imports, requires, or includes executable functionality (such as a library) from a source that is outside of the intended control sphere.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/126873 | vdb entry vendor advisory |
https://access.redhat.com/errata/RHSA-2017:2481 | vendor advisory |
https://access.redhat.com/errata/RHSA-2017:2469 | vendor advisory |
http://www.ibm.com/support/docview.wss?uid=swg22007305&myns=swgtiv&mynp=OCSSJQQ3&mync=E&cm_sp=swgtiv-_-OCSSJQQ3-_-E | vendor advisory |