{"id":"USN-3691-1","summary":"openjdk-7 vulnerabilities","details":"It was discovered that the Security component of OpenJDK did not correctly\nperform merging of multiple sections for the same file listed in JAR\narchive file manifests. An attacker could possibly use this to modify\nattributes in a manifest without invalidating the signature.\n(CVE-2018-2790)\n\nFrancesco Palmarini, Marco Squarcina, Mauro Tempesta, and Riccardo Focardi\ndiscovered that the Security component of OpenJDK did not restrict which\nclasses could be used when deserializing keys from the JCEKS key stores. An\nattacker could use this to specially craft a JCEKS key store to execute\narbitrary code. (CVE-2018-2794)\n\nIt was discovered that the Security component of OpenJDK in some situations\ndid not properly limit the amount of memory allocated when performing\ndeserialization. An attacker could use this to cause a denial of service\n(memory exhaustion). (CVE-2018-2795)\n\nIt was discovered that the Concurrency component of OpenJDK in some\nsituations did not properly limit the amount of memory allocated when\nperforming deserialization. An attacker could use this to cause a denial of\nservice (memory exhaustion). (CVE-2018-2796)\n\nIt was discovered that the JMX component of OpenJDK in some situations did\nnot properly limit the amount of memory allocated when performing\ndeserialization. An attacker could use this to cause a denial of service\n(memory exhaustion). (CVE-2018-2797)\n\nIt was discovered that the AWT component of OpenJDK in some situations did\nnot properly limit the amount of memory allocated when performing\ndeserialization. An attacker could use this to cause a denial of service\n(memory exhaustion). (CVE-2018-2798)\n\nIt was discovered that the JAXP component of OpenJDK in some situations did\nnot properly limit the amount of memory allocated when performing\ndeserialization. An attacker could use this to cause a denial of service\n(memory exhaustion). (CVE-2018-2799)\n\nMoritz Bechler discovered that the RMI component of OpenJDK enabled HTTP\ntransport for RMI servers by default. A remote attacker could use this to\ngain access to restricted services. (CVE-2018-2800)\n\nIt was discovered that a vulnerability existed in the Hotspot component of\nOpenJDK affecting confidentiality, data integrity, and availability. An\nattacker could use this to specially craft an Java application that caused\na denial of service or bypassed sandbox restrictions. (CVE-2018-2814)\n\nApostolos Giannakidis discovered that the Serialization component of\nOpenJDK did not properly bound memory allocations in some situations. An\nattacker could use this to cause a denial of service (memory exhaustion).\n(CVE-2018-2815)\n","modified":"2026-02-10T04:41:22Z","published":"2018-06-21T18:18:02Z","related":["UBUNTU-CVE-2018-2790","UBUNTU-CVE-2018-2794","UBUNTU-CVE-2018-2795","UBUNTU-CVE-2018-2796","UBUNTU-CVE-2018-2797","UBUNTU-CVE-2018-2798","UBUNTU-CVE-2018-2799","UBUNTU-CVE-2018-2800","UBUNTU-CVE-2018-2814","UBUNTU-CVE-2018-2815"],"upstream":["CVE-2018-2790","CVE-2018-2794","CVE-2018-2795","CVE-2018-2796","CVE-2018-2797","CVE-2018-2798","CVE-2018-2799","CVE-2018-2800","CVE-2018-2814","CVE-2018-2815","UBUNTU-CVE-2018-2790","UBUNTU-CVE-2018-2794","UBUNTU-CVE-2018-2795","UBUNTU-CVE-2018-2796","UBUNTU-CVE-2018-2797","UBUNTU-CVE-2018-2798","UBUNTU-CVE-2018-2799","UBUNTU-CVE-2018-2800","UBUNTU-CVE-2018-2814","UBUNTU-CVE-2018-2815"],"references":[{"type":"ADVISORY","url":"https://ubuntu.com/security/notices/USN-3691-1"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2018-2790"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2018-2794"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2018-2795"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2018-2796"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2018-2797"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2018-2798"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2018-2799"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2018-2800"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2018-2814"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2018-2815"}],"affected":[{"package":{"name":"openjdk-7","ecosystem":"Ubuntu:14.04:LTS","purl":"pkg:deb/ubuntu/openjdk-7@7u181-2.6.14-0ubuntu0.1?arch=source&distro=trusty"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"7u181-2.6.14-0ubuntu0.1"}]}],"versions":["7u25-2.3.12-4ubuntu3","7u25-2.3.12-4ubuntu5","7u45-2.4.3-3ubuntu1","7u45-2.4.3-3ubuntu2","7u45-2.4.3-4ubuntu1","7u45-2.4.3-4ubuntu2","7u51-2.4.4-1ubuntu1","7u51-2.4.5-1ubuntu1","7u51-2.4.6~pre1-1ubuntu2","7u51-2.4.6-1ubuntu3","7u51-2.4.6-1ubuntu4","7u55-2.4.7-1ubuntu1","7u65-2.5.1-4ubuntu1~0.14.04.1","7u65-2.5.1-4ubuntu1~0.14.04.2","7u65-2.5.2-3~14.04","7u71-2.5.3-0ubuntu0.14.04.1","7u75-2.5.4-1~trusty1","7u79-2.5.5-0ubuntu0.14.04.2","7u79-2.5.6-0ubuntu1.14.04.1","7u85-2.6.1-5ubuntu0.14.04.1","7u91-2.6.3-0ubuntu0.14.04.1","7u95-2.6.4-0ubuntu0.14.04.1","7u95-2.6.4-0ubuntu0.14.04.2","7u101-2.6.6-0ubuntu0.14.04.1","7u111-2.6.7-0ubuntu0.14.04.3","7u121-2.6.8-1ubuntu0.14.04.1","7u121-2.6.8-1ubuntu0.14.04.3","7u131-2.6.9-0ubuntu0.14.04.1","7u131-2.6.9-0ubuntu0.14.04.2","7u151-2.6.11-0ubuntu1.14.04.1","7u151-2.6.11-2ubuntu0.14.04.1","7u171-2.6.13-0ubuntu0.14.04.2"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_name":"icedtea-7-jre-jamvm","binary_version":"7u181-2.6.14-0ubuntu0.1"},{"binary_name":"openjdk-7-demo","binary_version":"7u181-2.6.14-0ubuntu0.1"},{"binary_name":"openjdk-7-jdk","binary_version":"7u181-2.6.14-0ubuntu0.1"},{"binary_name":"openjdk-7-jre","binary_version":"7u181-2.6.14-0ubuntu0.1"},{"binary_name":"openjdk-7-jre-headless","binary_version":"7u181-2.6.14-0ubuntu0.1"},{"binary_name":"openjdk-7-jre-lib","binary_version":"7u181-2.6.14-0ubuntu0.1"},{"binary_name":"openjdk-7-jre-zero","binary_version":"7u181-2.6.14-0ubuntu0.1"},{"binary_name":"openjdk-7-source","binary_version":"7u181-2.6.14-0ubuntu0.1"},{"binary_name":"openjdk-7-tests","binary_version":"7u181-2.6.14-0ubuntu0.1"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-3691-1.json","cves_map":{"cves":[{"id":"CVE-2018-2790","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N"},{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N"},{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N"},{"type":"Ubuntu","score":"low"}]},{"id":"CVE-2018-2794","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H"},{"type":"CVSS_V3","score":"CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H"},{"type":"Ubuntu","score":"medium"}]},{"id":"CVE-2018-2795","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"Ubuntu","score":"medium"}]},{"id":"CVE-2018-2796","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"Ubuntu","score":"medium"}]},{"id":"CVE-2018-2797","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"Ubuntu","score":"medium"}]},{"id":"CVE-2018-2798","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"Ubuntu","score":"medium"}]},{"id":"CVE-2018-2799","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"Ubuntu","score":"medium"}]},{"id":"CVE-2018-2800","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N"},{"type":"Ubuntu","score":"medium"}]},{"id":"CVE-2018-2814","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H"},{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H"},{"type":"Ubuntu","score":"medium"}]},{"id":"CVE-2018-2815","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"},{"type":"Ubuntu","score":"medium"}]}],"ecosystem":"Ubuntu:14.04:LTS"}}}],"schema_version":"1.7.3"}