It was discovered that the PatternSyntaxException class in OpenJDK did not properly validate arguments passed to it. An attacker could use this to possibly construct a class that caused a denial of service (excessive memory consumption).
{ "availability": "No subscription required", "binaries": [ { "binary_version": "8u181-b13-0ubuntu0.16.04.1", "binary_name": "openjdk-8-demo" }, { "binary_version": "8u181-b13-0ubuntu0.16.04.1", "binary_name": "openjdk-8-jdk" }, { "binary_version": "8u181-b13-0ubuntu0.16.04.1", "binary_name": "openjdk-8-jdk-headless" }, { "binary_version": "8u181-b13-0ubuntu0.16.04.1", "binary_name": "openjdk-8-jre" }, { "binary_version": "8u181-b13-0ubuntu0.16.04.1", "binary_name": "openjdk-8-jre-headless" }, { "binary_version": "8u181-b13-0ubuntu0.16.04.1", "binary_name": "openjdk-8-jre-jamvm" }, { "binary_version": "8u181-b13-0ubuntu0.16.04.1", "binary_name": "openjdk-8-jre-zero" }, { "binary_version": "8u181-b13-0ubuntu0.16.04.1", "binary_name": "openjdk-8-source" } ] }