ThreeTen Backport v1.6.8 was discovered to contain a NullPointerException via the component org.threeten.bp.LocalDate::compareTo(ChronoLocalDate). NOTE: this is disputed by multiple third parties who believe there was not reasonable evidence to determine the existence of a vulnerability. The submission may have been based on a tool that is not sufficiently robust for vulnerability identification.
References
| Link | Resource |
|---|---|
| http://threeten.com | Product |
| https://gist.github.com/LLM4IG/3cc9183dcd887020368a0bafeafec5e3 | Third Party Advisory |
| https://github.com/ThreeTen/threetenbp | Product |
| http://threeten.com | Product |
| https://gist.github.com/LLM4IG/3cc9183dcd887020368a0bafeafec5e3 | Third Party Advisory |
| https://github.com/ThreeTen/threetenbp | Product |
Configurations
History
No history.
Information
Published : 2024-04-08 23:15
Updated : 2025-03-05 16:28
NVD link : CVE-2024-23081
Mitre link : CVE-2024-23081
CVE.ORG link : CVE-2024-23081
JSON object : View
Products Affected
threeten
- threeten_backport
CWE
CWE-476
NULL Pointer Dereference
