PT-2024-14384 · Unknown · Jfreechart

Published

2024-04-10

·

Updated

2024-08-16

·

CVE-2023-52070

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions JFreeChart version 1.5.4
Description The issue is related to an ArrayIndexOutOfBounds condition via the setSeriesNeedle(int index, int type) method. However, it is noted that the existence of this issue is disputed by multiple third parties, suggesting that the evidence may not be sufficient to confirm the vulnerability.
Recommendations For JFreeChart version 1.5.4, as a temporary workaround, consider restricting the use of the setSeriesNeedle(int index, int type) method until further clarification on the issue is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2023-52070

Affected Products

Jfreechart