CVE-2024-23081

ThreeTen Backport v1.6.8 was discovered to contain a NullPointerException via the component org.threeten.bp.LocalDate::compareTo(ChronoLocalDate). NOTE: this is disputed by multiple third parties who believe there was not reasonable evidence to determine the existence of a vulnerability. The submission may have been based on a tool that is not sufficiently robust for vulnerability identification.
Configurations

Configuration 1 (hide)

cpe:2.3:a:threeten:threeten_backport:1.6.8:*:*:*:*:*:*:*

History

05 Mar 2025, 14:53

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 3.3
References () https://gist.github.com/LLM4IG/3cc9183dcd887020368a0bafeafec5e3 - () https://gist.github.com/LLM4IG/3cc9183dcd887020368a0bafeafec5e3 - Third Party Advisory
References () https://github.com/ThreeTen/threetenbp - () https://github.com/ThreeTen/threetenbp - Product
References () http://threeten.com - () http://threeten.com - Product
CWE CWE-476
CPE cpe:2.3:a:threeten:threeten_backport:1.6.8:*:*:*:*:*:*:*
First Time Threeten
Threeten threeten Backport

11 Apr 2024, 19:15

Type Values Removed Values Added
Summary ThreeTen Backport v1.6.8 was discovered to contain a NullPointerException via the component org.threeten.bp.LocalDate::compareTo(ChronoLocalDate). ThreeTen Backport v1.6.8 was discovered to contain a NullPointerException via the component org.threeten.bp.LocalDate::compareTo(ChronoLocalDate). NOTE: this is disputed by multiple third parties who believe there was not reasonable evidence to determine the existence of a vulnerability. The submission may have been based on a tool that is not sufficiently robust for vulnerability identification.

08 Apr 2024, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-08 23:15

Updated : 2025-03-05 14:53


NVD link : CVE-2024-23081

Mitre link : CVE-2024-23081


JSON object : View

Products Affected

threeten

  • threeten_backport
CWE
CWE-476

NULL Pointer Dereference