In Eclipse OpenJ9 before version 0.41.0, the JVM can be forced into an infinite busy hang on a spinlock or a segmentation fault if a shutdown signal (SIGTERM, SIGINT or SIGHUP) is received before the JVM has finished initializing.
References
| Link | Resource |
|---|---|
| https://github.com/eclipse-openj9/openj9/pull/18085 | Issue Tracking Patch |
| https://gitlab.eclipse.org/security/cve-assignement/-/issues/13 | Vendor Advisory |
| https://github.com/eclipse-openj9/openj9/pull/18085 | Issue Tracking Patch |
| https://gitlab.eclipse.org/security/cve-assignement/-/issues/13 | Vendor Advisory |
Configurations
History
21 Nov 2024, 08:42
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/eclipse-openj9/openj9/pull/18085 - Issue Tracking, Patch | |
| References | () https://gitlab.eclipse.org/security/cve-assignement/-/issues/13 - Vendor Advisory | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.1 |
22 Nov 2023, 22:39
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-11-15 14:15
Updated : 2024-11-21 08:42
NVD link : CVE-2023-5676
Mitre link : CVE-2023-5676
CVE.ORG link : CVE-2023-5676
JSON object : View
Products Affected
eclipse
- openj9
