Kaspersky ID:
KLA20013
Fecha de detección:
10/18/2022
Actualizado:
01/28/2026

Descripción

Multiple vulnerabilities were found in Oracle Java SE and GraalVM. Malicious users can exploit these vulnerabilities to execute arbitrary code, gain privileges, cause denial of service.

Below is a complete list of vulnerabilities:

  1. An elevation of privilege vulnerability in Networking can be exploited remotely to gain privileges and execute arbitrary code.
  2. A denial of service vulnerability in Lightweight HTTP Server can be exploited to cause denial of service and execute arbitrary code.
  3. An elevation of privilege vulnerability in JNDI can be exploited remotely to gain privileges and execute arbitrary code.
  4. An elevation of privilege vulnerability in JGSS can be exploited remotely to gain privileges and execute arbitrary code.
  5. An elevation of privilege vulnerability in Security can be exploited remotely to gain privileges and execute arbitrary code.
  6. A denial of service vulnerability in Security can be exploited to cause denial of service and execute arbitrary code.

Notas informativas originales

Explotación

Public exploits exist for this vulnerability.

Productos relacionados

Lista CVE

  • CVE-2022-39399
    warning
  • CVE-2022-21628
    high
  • CVE-2022-21624
    warning
  • CVE-2022-21618
    high
  • CVE-2022-21619
    warning
  • CVE-2022-21626
    high

Leer más

Conozca las estadísticas de las vulnerabilidades que se propagan en su región statistics.securelist.com

¿Has encontrado algún error en la descripción de esta vulnerabilidad? ¡Háznoslo saber!
Kaspersky Next:
ciberseguridad redefinida
Leer más
Nuevo Kaspersky
¡Su vida digital merece una protección completa!
Leer más
Do you want to save your changes?
Your message has been sent successfully.