Kaspersky ID:
KLA20013
Data de detecção:
10/18/2022
Atualizado:
01/28/2026

Descrição

Multiple vulnerabilities were found in Oracle Java SE and GraalVM. Malicious users can exploit these vulnerabilities to execute arbitrary code, gain privileges, cause denial of service.

Below is a complete list of vulnerabilities:

  1. An elevation of privilege vulnerability in Networking can be exploited remotely to gain privileges and execute arbitrary code.
  2. A denial of service vulnerability in Lightweight HTTP Server can be exploited to cause denial of service and execute arbitrary code.
  3. An elevation of privilege vulnerability in JNDI can be exploited remotely to gain privileges and execute arbitrary code.
  4. An elevation of privilege vulnerability in JGSS can be exploited remotely to gain privileges and execute arbitrary code.
  5. An elevation of privilege vulnerability in Security can be exploited remotely to gain privileges and execute arbitrary code.
  6. A denial of service vulnerability in Security can be exploited to cause denial of service and execute arbitrary code.

Comunicados originais

Exploração

Public exploits exist for this vulnerability.

Produtos relacionados

Lista de CVE

  • CVE-2022-39399
    warning
  • CVE-2022-21628
    high
  • CVE-2022-21624
    warning
  • CVE-2022-21618
    high
  • CVE-2022-21619
    warning
  • CVE-2022-21626
    high

Saiba mais

Descubra as estatísticas das vulnerabilidades que se espalham em sua região statistics.securelist.com

Encontrou uma imprecisão na descrição desta vulnerabilidade? Avise-nos!
Kaspersky Next:
cibersegurança redefinida
Saber mais
Novo Kaspersky!
Sua vida dgital merece proteção completa!
Saber mais
Do you want to save your changes?
Your message has been sent successfully.