FlawAtlas
Search the atlas
USN-7254-1 Not scored

openjdk-21 vulnerability

It was discovered that the Hotspot component of OpenJDK 21 did not properly handle API access under certain circumstances. An unauthenticated attacker could possibly use this issue to access unauthorized resources and expose sensitive information.

Exploit probability Not scored
Published February 5, 2025
Required by Not available
Last source change April 27, 2026

02 / AFFECTED SOFTWARE

Affected packages

Ubuntu:20.04:LTS openjdk-21

5 explicit affected versions

Ubuntu:22.04:LTS openjdk-21

5 explicit affected versions

Ubuntu:24.04:LTS openjdk-21

12 explicit affected versions

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities USN-7254-1

It was discovered that the Hotspot component of OpenJDK 21 did not properly handle API access under certain circumstances. An unauthenticated attacker could possibly use this issue to access unauthorized resources and expose sensitive information.

View original source

05 / REFERENCES

Further evidence