CVE-2024-20918

Summary

CVECVE-2024-20918
StatePUBLISHED
AssignerUnknown
Source PriorityCVE Program / NVD first with legacy fallback
Published2024-01-16 22:15:00 UTC
Updated2024-02-01 17:15:00 UTC
DescriptionDescription unavailable.

Risk And Classification

Problem Types: NVD-CWE-noinfo

NVD Known Affected Configurations (CPE 2.3)

TypeVendorProductVersionUpdateEditionLanguage
Application Oracle Graalvm 20.3.12 All All All
Application Oracle Graalvm 21.3.8 All All All
Application Oracle Graalvm 22.3.4 All All All
Application Oracle Jdk 1.8.0 update391 All All
Application Oracle Jdk 1.8.0 update391 All All
Application Oracle Jdk 11.0.21 All All All
Application Oracle Jdk 17.0.9 All All All
Application Oracle Jdk 21.0.1 All All All
Application Oracle Jre 1.8.0 update391 All All
Application Oracle Jre 1.8.0 update391 All All
Application Oracle Jre 11.0.21 All All All
Application Oracle Jre 17.0.9 All All All
Application Oracle Jre 21.0.1 All All All

References

ReferenceSourceLinkTags
[SECURITY] [DLA 3728-1] openjdk-11 security update lists.debian.org
Oracle Critical Patch Update Advisory - January 2024 www.oracle.com Patch, Vendor Advisory
January 2024 Java Platform Standard Edition Vulnerabilities in NetApp Products | NetApp Product Security security.netapp.com
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

Legacy QID Mappings

  • 161295 Oracle Enterprise Linux Security Update for java-1.8.0-openjdk (ELSA-2024-0223)
  • 161296 Oracle Enterprise Linux Security Update for java-11-openjdk (ELSA-2024-0232)
  • 161301 Oracle Enterprise Linux Security Update for java-21-openjdk (ELSA-2024-0248)
  • 161302 Oracle Enterprise Linux Security Update for java-21-openjdk (ELSA-2024-0249)
  • 161303 Oracle Enterprise Linux Security Update for java-17-openjdk (ELSA-2024-0267)
  • 161305 Oracle Enterprise Linux Security Update for java-11-openjdk (ELSA-2024-0266)
  • 161309 Oracle Enterprise Linux Security Update for java-1.8.0-openjdk (ELSA-2024-0265)
  • 200143 Ubuntu Security Notification for Open Java Development Toolkit (OpenJDK) 17 Vulnerabilities (USN-6661-1)
  • 200144 Ubuntu Security Notification for Open Java Development Toolkit (OpenJDK) 21 Vulnerabilities (USN-6662-1)
  • 200145 Ubuntu Security Notification for Open Java Development Toolkit (OpenJDK) 11 Vulnerabilities (USN-6660-1)
  • 200197 Ubuntu Security Notification for Open Java Development Toolkit (OpenJDK) 8 Vulnerabilities (USN-6696-1)
  • 242723 Red Hat Update for java-11-openjdk (RHSA-2024:0266)
  • 242866 Red Hat Update for java-17-openjdk (RHSA-2024:0267)
  • 242867 Red Hat Update for java-1.8.0-openjdk (RHSA-2024:0265)
  • 242868 Red Hat Update for java-17-openjdk (RHSA-2024:0244)
  • 257296 CentOS Security Update for java-11-openjdk (CESA-2024:0232)
  • 257300 CentOS Security Update for java-1.8.0-openjdk Security Update (CESA-2024:0223)
  • 296108 Oracle Solaris 11.4 Support Repository Update (SRU) 66.164.1 Missing (CPUJAN2024)
  • 330167 IBM AIX Java Multiple Vulnerabilities (java_feb2024_advisory)
  • 357000 Amazon Linux Security Advisory for java-1.8.0-amazon-corretto : ALAS2CORRETTO8-2024-009
  • 357001 Amazon Linux Security Advisory for java-11-amazon-corretto : ALAS2-2024-2414
  • 357002 Amazon Linux Security Advisory for java-17-amazon-corretto : ALAS2-2024-2415
  • 357003 Amazon Linux Security Advisory for java-21-amazon-corretto : ALAS2023-2024-485
  • 357004 Amazon Linux Security Advisory for java-11-amazon-corretto : ALAS2023-2024-484
  • 357005 Amazon Linux Security Advisory for java-17-amazon-corretto : ALAS2023-2024-483
  • 357006 Amazon Linux Security Advisory for java-1.8.0-amazon-corretto : ALAS2023-2024-482
  • 357030 Amazon Linux Security Advisory for java-1.8.0-amazon-corretto : ALAS2023-2024-486
  • 357048 Amazon Linux Security Advisory for java-1.8.0-amazon-corretto : ALAS2CORRETTO8-2024-010
  • 357093 Amazon Linux Security Advisory for java-1.8.0-openjdk : ALAS2-2024-2438
  • 357111 Amazon Linux Security Advisory for java-11-openjdk : ALAS2JAVA-OPENJDK11-2024-007
  • 379264 Oracle Java Standard Edition (SE) Critical Patch Update - January 2024 (CPUJAN2024)
  • 379291 Alibaba Cloud Linux Security Update for java-11-openjdk (ALINUX2-SA-2024:0005)
  • 379292 Alibaba Cloud Linux Security Update for java-1.8.0-openjdk (ALINUX2-SA-2024:0004)
  • 379363 Amazon Corretto Critical Patch Update (JAN2024)
  • 379364 Azul Java Multiple Vulnerabilities Security Update January 2024
  • 379387 IBM Java Software Development Kit (SDK) Security Vulnerability (7116432)
  • 379431 IBM WebSphere Application ServerJava SDK Vulnerability (7058356)
  • 379619 Alibaba Cloud Linux Security Update for java-17-openjdk (ALINUX3-SA-2024:0024)
  • 379628 Alibaba Cloud Linux Security Update for java-1.8.0-openjdk (ALINUX3-SA-2024:0023)
  • 379645 Alibaba Cloud Linux Security Update for java-11-openjdk (ALINUX3-SA-2024:0048)
  • 510679 Alpine Linux Security Update for openjdk11
  • 510680 Alpine Linux Security Update for openjdk17
  • 510683 Alpine Linux Security Update for openjdk21
  • 510785 Alpine Linux Security Update for openjdk8
  • 510812 Alpine Linux Security Update for openjdk8
  • 6000441 Debian Security Update for openjdk-11 (DSA 5604-1)
  • 6000462 Debian Security Update for openjdk-11 (DLA 3728-1)
  • 6000465 Debian Security Update for openjdk-17 (DSA 5613-1)
  • 755651 SUSE Enterprise Linux Security Update for java-11-openjdk (SUSE-SU-2024:0203-1)
  • 755702 SUSE Enterprise Linux Security Update for java-17-openjdk (SUSE-SU-2024:0325-1)
  • 755766 SUSE Enterprise Linux Security Update for java-1_8_0-openj9 (SUSE-SU-2024:0479-1)
  • 755832 SUSE Enterprise Linux Security Update for java-1_8_0-ibm (SUSE-SU-2024:0605-1)
  • 755835 SUSE Enterprise Linux Security Update for java-1_8_0-ibm (SUSE-SU-2024:0619-1)
  • 755924 SUSE Enterprise Linux Security Update for java-1_8_0-openjdk (SUSE-SU-2024:0804-1)
  • 755962 SUSE Enterprise Linux Security Update for java-1_8_0-openjdk (SUSE-SU-2024:0847-1)
  • 941543 AlmaLinux Security Update for java-21-openjdk (ALSA-2024:0248)
  • 941544 AlmaLinux Security Update for java-1.8.0-openjdk (ALSA-2024:0265)
  • 941545 AlmaLinux Security Update for java-17-openjdk (ALSA-2024:0267)
  • 941546 AlmaLinux Security Update for java-21-openjdk (ALSA-2024:0249)
  • 941547 AlmaLinux Security Update for java-11-openjdk (ALSA-2024:0266)
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report