AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2011-0311

LOW · CVSS 3.5 EPSS 1.78%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2011-09-02 · Last synced 2026-08-04

CyberRota Analysis

This is a low severity vulnerability with a CVSS score of 3.5. It affects Java. It may be remotely exploitable. Exploitation may require the attacker to be authenticated. It may lead to a denial-of-service condition.

CVE
CVE-2011-0311
Severity
LOW
CVSS
3.5
EPSS
1.78%
Java

Original NVD Description

The class file parser in IBM Java before 1.4.2 SR13 FP9, as used in IBM Runtimes for Java Technology 5.0.0 before SR13 and 6.0.0 before SR10, allows remote authenticated users to cause a denial of service (JVM segmentation fault, and possibly memory consumption or an infinite loop) via a crafted attribute length field in a class file, which triggers a buffer over-read.