CVE-2025-1470

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Feb 21, 2025
Updated: Mar 5, 2025
CWE ID 476

Summary

CVE-2025-1470 is a vulnerability affecting Eclipse OpenJ9 Open Mission Control (OMR) versions prior to 0.5.0. Some internal port library and utility consumers of z/OS atoe functions in OMR did not adequately check for NULL memory pointers or memory allocation failures. This oversight can result in NULL pointer dereferences, potentially leading to crashes. However, beginning in version 0.5.0, these internal OMR consumers have been updated to handle NULL return values and memory allocation failures more effectively.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share