CyberRota Analysis
This is a low severity vulnerability with a CVSS score of 3.5. It affects Java. It may be remotely exploitable. Exploitation may require the attacker to be authenticated. It may lead to a denial-of-service condition.
CVE
CVE-2011-0311
Severity
LOW
CVSS
3.5
EPSS
1.78%
Java
Original NVD Description
The class file parser in IBM Java before 1.4.2 SR13 FP9, as used in IBM Runtimes for Java Technology 5.0.0 before SR13 and 6.0.0 before SR10, allows remote authenticated users to cause a denial of service (JVM segmentation fault, and possibly memory consumption or an infinite loop) via a crafted attribute length field in a class file, which triggers a buffer over-read.