CVE-2025-4447

Description

In Eclipse OpenJ9 versions up to 0.51, when used with OpenJDK version 8 a stack based buffer overflow can be caused by modifying a file on disk that is read when the JVM starts.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.234

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2025-21587,CVE-2025-4447 are fixed in IBM WebSphere 8.5.5.28Windows
Multiple Vulnerabilities are affected in IBM TXSeries for Multiplatforms 9.1Windows
Multiple Vulnerabilities are affected in IBM Tivoli Monitoring 6.3.0.7Windows
Multiple Vulnerabilities are affected in IBM TXSeries for Multiplatforms 8.2Windows
Multiple Vulnerabilities are affected in IBM Business Automation Workflow 24.0.1Windows
Multiple Vulnerabilities are affected in IBM MQ 9.3.5.1Windows
Multiple Vulnerabilities are affected in IBM TXSeries for Multiplatforms 10.1Windows
Multiple Vulnerabilities are affected in IBM TXSeries for Multiplatforms 11.1Windows
Multiple Vulnerabilities are affected in IBM Tivoli Application Dependency Discovery Manager 7.3.0.12Windows
Multiple Vulnerabilities are affected in IBM App Connect Enterprise 12.0.12.14Windows
Multiple Vulnerabilities are affected in IBM App Connect Enterprise 13.0.3.1Windows
Multiple Vulnerabilities are affected in IBM MQ 9.4.0.11Windows
Multiple Vulnerabilities are affected in IBM MQ 9.4.2.1Windows
Vulnerabilities CVE-2025-30472,CVE-2025-30698,CVE-2025-4447 are affected in IBM MQ 9.1.0.28Windows
Vulnerabilities CVE-2025-30472,CVE-2025-30698,CVE-2025-4447 are affected in IBM MQ 9.2.0.35Windows
Vulnerabilities CVE-2025-30472,CVE-2025-30698,CVE-2025-33181,CVE-2025-4447 are affected in IBM MQ 9.3.0.28Windows
SUSE-SU-2025:01788-1(Legacy Module 15 SP6) java-1_8_0-ibm-plugin-1.8.0_sr8.45-150000.3.101.1.x86_64.rpmLinux
SUSE-SU-2025:01788-1(Legacy Module 15 SP6) java-1_8_0-ibm-devel-1.8.0_sr8.45-150000.3.101.1.x86_64.rpmLinux
SUSE-SU-2025:01788-1(Legacy Module 15 SP6) java-1_8_0-ibm-alsa-1.8.0_sr8.45-150000.3.101.1.x86_64.rpmLinux
SUSE-SU-2025:01788-1(Legacy Module 15 SP6) java-1_8_0-ibm-1.8.0_sr8.45-150000.3.101.1.x86_64.rpmLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234