CVE-2019-10181 log

Severity High
Remote Yes
Type Insufficient validation
It was found that executable code could be injected in a JAR file without compromising the signature verification. An attacker could use this flaw to inject code in a trusted JAR. The code would be executed inside the sandbox.
Group Package Affected Fixed Severity Status Ticket
AVG-1017 icedtea-web 1.7-1 1.8.3-1 High Fixed