eclipse openj9 CVE-2021-41035 is a vulnerability in Eclipse Openj9
Published on October 25, 2021

In Eclipse Openj9 before version 0.29.0, the JVM does not throw IllegalAccessError for MethodHandles that invoke inaccessible interface methods.

NVD

Weakness Types

Execution with Unnecessary Privileges

The software performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.

Expected Behavior Violation

A feature, API, or function does not perform according to its specification.


Products Associated with CVE-2021-41035

Want to know whenever a new CVE is published for Eclipse Openj9? stack.watch will email you.

 

Affected Versions

The Eclipse Foundation Eclipse OMR:

Exploit Probability

EPSS
0.15%
Percentile
35.06%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.