CVE-2021-41035

Related Vulnerabilities: CVE-2021-41035  

In Eclipse Openj9 before version 0.29.0, the JVM does not throw IllegalAccessError for MethodHandles that invoke inaccessible interface methods.

Description

The MITRE CVE dictionary describes this issue as:

In Eclipse Openj9 before version 0.29.0, the JVM does not throw IllegalAccessError for MethodHandles that invoke inaccessible interface methods.

Additional Information

  • Bugzilla 2027791: CVE-2021-41035 IBM JDK: IllegalAccessError exception not thrown for MethodHandles that invoke inaccessible interface methods
  • CWE-732: Incorrect Permission Assignment for Critical Resource
  • FAQ: Frequently asked questions about CVE-2021-41035