Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Scripting). Supported versions that are affected are Oracle Java SE: 8u391, 8u391-perf, 11.0.21; Oracle GraalVM for JDK: 17.0.9; Oracle GraalVM Enterprise Edition: 20.3.12, 21.3.8 and 22.3.4. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 5.9 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N).
{
    "binaries": [
        {
            "binary_name": "openjdk-9-demo",
            "binary_version": "9~b114-0ubuntu1"
        },
        {
            "binary_name": "openjdk-9-jdk",
            "binary_version": "9~b114-0ubuntu1"
        },
        {
            "binary_name": "openjdk-9-jdk-headless",
            "binary_version": "9~b114-0ubuntu1"
        },
        {
            "binary_name": "openjdk-9-jre",
            "binary_version": "9~b114-0ubuntu1"
        },
        {
            "binary_name": "openjdk-9-jre-headless",
            "binary_version": "9~b114-0ubuntu1"
        },
        {
            "binary_name": "openjdk-9-source",
            "binary_version": "9~b114-0ubuntu1"
        }
    ]
}{
    "binaries": [
        {
            "binary_name": "openjdk-8-demo",
            "binary_version": "8u402-ga-2ubuntu1~20.04"
        },
        {
            "binary_name": "openjdk-8-jdk",
            "binary_version": "8u402-ga-2ubuntu1~20.04"
        },
        {
            "binary_name": "openjdk-8-jdk-headless",
            "binary_version": "8u402-ga-2ubuntu1~20.04"
        },
        {
            "binary_name": "openjdk-8-jre",
            "binary_version": "8u402-ga-2ubuntu1~20.04"
        },
        {
            "binary_name": "openjdk-8-jre-headless",
            "binary_version": "8u402-ga-2ubuntu1~20.04"
        },
        {
            "binary_name": "openjdk-8-jre-zero",
            "binary_version": "8u402-ga-2ubuntu1~20.04"
        },
        {
            "binary_name": "openjdk-8-source",
            "binary_version": "8u402-ga-2ubuntu1~20.04"
        }
    ],
    "availability": "No subscription required"
}{
    "binaries": [
        {
            "binary_name": "openjdk-11-demo",
            "binary_version": "11.0.22+7-0ubuntu2~20.04.1"
        },
        {
            "binary_name": "openjdk-11-jdk",
            "binary_version": "11.0.22+7-0ubuntu2~20.04.1"
        },
        {
            "binary_name": "openjdk-11-jdk-headless",
            "binary_version": "11.0.22+7-0ubuntu2~20.04.1"
        },
        {
            "binary_name": "openjdk-11-jre",
            "binary_version": "11.0.22+7-0ubuntu2~20.04.1"
        },
        {
            "binary_name": "openjdk-11-jre-headless",
            "binary_version": "11.0.22+7-0ubuntu2~20.04.1"
        },
        {
            "binary_name": "openjdk-11-jre-zero",
            "binary_version": "11.0.22+7-0ubuntu2~20.04.1"
        },
        {
            "binary_name": "openjdk-11-source",
            "binary_version": "11.0.22+7-0ubuntu2~20.04.1"
        }
    ],
    "availability": "No subscription required"
}{
    "binaries": [
        {
            "binary_name": "openjdk-13-demo",
            "binary_version": "13.0.7+5-0ubuntu1~20.04"
        },
        {
            "binary_name": "openjdk-13-jdk",
            "binary_version": "13.0.7+5-0ubuntu1~20.04"
        },
        {
            "binary_name": "openjdk-13-jdk-headless",
            "binary_version": "13.0.7+5-0ubuntu1~20.04"
        },
        {
            "binary_name": "openjdk-13-jre",
            "binary_version": "13.0.7+5-0ubuntu1~20.04"
        },
        {
            "binary_name": "openjdk-13-jre-headless",
            "binary_version": "13.0.7+5-0ubuntu1~20.04"
        },
        {
            "binary_name": "openjdk-13-jre-zero",
            "binary_version": "13.0.7+5-0ubuntu1~20.04"
        },
        {
            "binary_name": "openjdk-13-source",
            "binary_version": "13.0.7+5-0ubuntu1~20.04"
        }
    ]
}{
    "binaries": [
        {
            "binary_name": "openjdk-16-demo",
            "binary_version": "16.0.1+9-1~20.04"
        },
        {
            "binary_name": "openjdk-16-jdk",
            "binary_version": "16.0.1+9-1~20.04"
        },
        {
            "binary_name": "openjdk-16-jdk-headless",
            "binary_version": "16.0.1+9-1~20.04"
        },
        {
            "binary_name": "openjdk-16-jre",
            "binary_version": "16.0.1+9-1~20.04"
        },
        {
            "binary_name": "openjdk-16-jre-headless",
            "binary_version": "16.0.1+9-1~20.04"
        },
        {
            "binary_name": "openjdk-16-jre-zero",
            "binary_version": "16.0.1+9-1~20.04"
        },
        {
            "binary_name": "openjdk-16-source",
            "binary_version": "16.0.1+9-1~20.04"
        }
    ]
}{
    "binaries": [
        {
            "binary_name": "openjdk-18-demo",
            "binary_version": "18.0.2+9-2~22.04"
        },
        {
            "binary_name": "openjdk-18-jdk",
            "binary_version": "18.0.2+9-2~22.04"
        },
        {
            "binary_name": "openjdk-18-jdk-headless",
            "binary_version": "18.0.2+9-2~22.04"
        },
        {
            "binary_name": "openjdk-18-jre",
            "binary_version": "18.0.2+9-2~22.04"
        },
        {
            "binary_name": "openjdk-18-jre-headless",
            "binary_version": "18.0.2+9-2~22.04"
        },
        {
            "binary_name": "openjdk-18-jre-zero",
            "binary_version": "18.0.2+9-2~22.04"
        },
        {
            "binary_name": "openjdk-18-source",
            "binary_version": "18.0.2+9-2~22.04"
        }
    ]
}{
    "binaries": [
        {
            "binary_name": "openjdk-19-demo",
            "binary_version": "19.0.2+7-0ubuntu3~22.04"
        },
        {
            "binary_name": "openjdk-19-jdk",
            "binary_version": "19.0.2+7-0ubuntu3~22.04"
        },
        {
            "binary_name": "openjdk-19-jdk-headless",
            "binary_version": "19.0.2+7-0ubuntu3~22.04"
        },
        {
            "binary_name": "openjdk-19-jre",
            "binary_version": "19.0.2+7-0ubuntu3~22.04"
        },
        {
            "binary_name": "openjdk-19-jre-headless",
            "binary_version": "19.0.2+7-0ubuntu3~22.04"
        },
        {
            "binary_name": "openjdk-19-jre-zero",
            "binary_version": "19.0.2+7-0ubuntu3~22.04"
        },
        {
            "binary_name": "openjdk-19-source",
            "binary_version": "19.0.2+7-0ubuntu3~22.04"
        }
    ]
}{
    "binaries": [
        {
            "binary_name": "openjdk-8-demo",
            "binary_version": "8u402-ga-2ubuntu1~22.04"
        },
        {
            "binary_name": "openjdk-8-jdk",
            "binary_version": "8u402-ga-2ubuntu1~22.04"
        },
        {
            "binary_name": "openjdk-8-jdk-headless",
            "binary_version": "8u402-ga-2ubuntu1~22.04"
        },
        {
            "binary_name": "openjdk-8-jre",
            "binary_version": "8u402-ga-2ubuntu1~22.04"
        },
        {
            "binary_name": "openjdk-8-jre-headless",
            "binary_version": "8u402-ga-2ubuntu1~22.04"
        },
        {
            "binary_name": "openjdk-8-jre-zero",
            "binary_version": "8u402-ga-2ubuntu1~22.04"
        },
        {
            "binary_name": "openjdk-8-source",
            "binary_version": "8u402-ga-2ubuntu1~22.04"
        }
    ],
    "availability": "No subscription required"
}{
    "binaries": [
        {
            "binary_name": "openjdk-11-demo",
            "binary_version": "11.0.22+7-0ubuntu2~22.04.1"
        },
        {
            "binary_name": "openjdk-11-jdk",
            "binary_version": "11.0.22+7-0ubuntu2~22.04.1"
        },
        {
            "binary_name": "openjdk-11-jdk-headless",
            "binary_version": "11.0.22+7-0ubuntu2~22.04.1"
        },
        {
            "binary_name": "openjdk-11-jre",
            "binary_version": "11.0.22+7-0ubuntu2~22.04.1"
        },
        {
            "binary_name": "openjdk-11-jre-headless",
            "binary_version": "11.0.22+7-0ubuntu2~22.04.1"
        },
        {
            "binary_name": "openjdk-11-jre-zero",
            "binary_version": "11.0.22+7-0ubuntu2~22.04.1"
        },
        {
            "binary_name": "openjdk-11-source",
            "binary_version": "11.0.22+7-0ubuntu2~22.04.1"
        }
    ],
    "availability": "No subscription required"
}{
    "binaries": [
        {
            "binary_name": "openjdk-8-demo",
            "binary_version": "8u432-ga~us1-0ubuntu2~16.04.4"
        },
        {
            "binary_name": "openjdk-8-jdk",
            "binary_version": "8u432-ga~us1-0ubuntu2~16.04.4"
        },
        {
            "binary_name": "openjdk-8-jdk-headless",
            "binary_version": "8u432-ga~us1-0ubuntu2~16.04.4"
        },
        {
            "binary_name": "openjdk-8-jre",
            "binary_version": "8u432-ga~us1-0ubuntu2~16.04.4"
        },
        {
            "binary_name": "openjdk-8-jre-headless",
            "binary_version": "8u432-ga~us1-0ubuntu2~16.04.4"
        },
        {
            "binary_name": "openjdk-8-jre-jamvm",
            "binary_version": "8u432-ga~us1-0ubuntu2~16.04.4"
        },
        {
            "binary_name": "openjdk-8-jre-zero",
            "binary_version": "8u432-ga~us1-0ubuntu2~16.04.4"
        },
        {
            "binary_name": "openjdk-8-source",
            "binary_version": "8u432-ga~us1-0ubuntu2~16.04.4"
        }
    ],
    "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}{
    "binaries": [
        {
            "binary_name": "openjdk-11-demo",
            "binary_version": "11.0.22+7-0ubuntu2~18.04.1"
        },
        {
            "binary_name": "openjdk-11-jdk",
            "binary_version": "11.0.22+7-0ubuntu2~18.04.1"
        },
        {
            "binary_name": "openjdk-11-jdk-headless",
            "binary_version": "11.0.22+7-0ubuntu2~18.04.1"
        },
        {
            "binary_name": "openjdk-11-jre",
            "binary_version": "11.0.22+7-0ubuntu2~18.04.1"
        },
        {
            "binary_name": "openjdk-11-jre-headless",
            "binary_version": "11.0.22+7-0ubuntu2~18.04.1"
        },
        {
            "binary_name": "openjdk-11-jre-zero",
            "binary_version": "11.0.22+7-0ubuntu2~18.04.1"
        },
        {
            "binary_name": "openjdk-11-source",
            "binary_version": "11.0.22+7-0ubuntu2~18.04.1"
        }
    ],
    "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}{
    "binaries": [
        {
            "binary_name": "openjdk-8-demo",
            "binary_version": "8u402-ga-2ubuntu1~18.04"
        },
        {
            "binary_name": "openjdk-8-jdk",
            "binary_version": "8u402-ga-2ubuntu1~18.04"
        },
        {
            "binary_name": "openjdk-8-jdk-headless",
            "binary_version": "8u402-ga-2ubuntu1~18.04"
        },
        {
            "binary_name": "openjdk-8-jre",
            "binary_version": "8u402-ga-2ubuntu1~18.04"
        },
        {
            "binary_name": "openjdk-8-jre-headless",
            "binary_version": "8u402-ga-2ubuntu1~18.04"
        },
        {
            "binary_name": "openjdk-8-jre-zero",
            "binary_version": "8u402-ga-2ubuntu1~18.04"
        },
        {
            "binary_name": "openjdk-8-source",
            "binary_version": "8u402-ga-2ubuntu1~18.04"
        }
    ],
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro"
}