SAP Knowledge Base Article - Preview

3756171 - Vulnerabilities CVE-2024-21235 / CVE-2024-21217 / CVE-2024-21208 / CVE-2024-21210 detected in Oracle JRE 11.0.16 Bundled with Introscope Enterprise Manager 10.8

Symptom

  • If  performed a security vulnerability scan on the SAP Solution Manager Introscope installation and identified multiple CVEs related to Oracle JRE 11.0.16 located under:

         /usr/sap/ccms/apmintroscope/jre/lib/jrt-fs.jar

  • The following vulnerabilities were reported:

         1.CVE-2024-21235
         2.CVE-2024-21217
         3.CVE-2024-21208
         4.CVE-2024-21210


Read more...

Environment

  • SAP Solution Manager 7.2
  • Introscope Manager 10.8

Product

SAP Solution Manager 7.2

Keywords

SAP Solution Manager, Introscope Enterprise Manager, Oracle JRE 11.0.16, CVE-2024-21235, CVE-2024-21217, CVE-2024-21208, CVE-2024-21210, vulnerability scan, SAP JRE, Introscope 10.8 SP1 PL2, SAP Note 3247270, security exception, jrt-fs.jar , KBA , XX-PART-WILY , Introscope by CA Technologies , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.