CVE-2024-10917
Severity CVSS v4.0:
Pending analysis
Type:
CWE-190
Integer Overflow or Wraparound
Publication date:
11/11/2024
Last modified:
09/01/2025
Description
In Eclipse OpenJ9 versions up to 0.47, the JNI function GetStringUTFLength may return an incorrect value which has wrapped around. From 0.48 the value is correct but may be truncated to include a smaller number of characters.
Impact
Base Score 3.x
3.70
Severity 3.x
LOW
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:eclipse:openj9:*:*:*:*:*:*:*:* | 0.8.0 (including) | 0.48.0 (excluding) |
To consult the complete list of CPE names with products and versions, see this page