eclipse openj9 CVE-2021-41035 is a vulnerability in Eclipse Openj9
Published on October 25, 2021

In Eclipse Openj9 before version 0.29.0, the JVM does not throw IllegalAccessError for MethodHandles that invoke inaccessible interface methods.

NVD

Weakness Types

Execution with Unnecessary Privileges

The software performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.

Expected Behavior Violation

A feature, API, or function does not perform according to its specification.


Products Associated with CVE-2021-41035

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2021-41035 are published in Eclipse Openj9:

 

Affected Versions

The Eclipse Foundation Eclipse OMR:

Exploit Probability

EPSS
0.15%
Percentile
35.85%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.