Security Alert — Immediate Action Required
| Property | Details |
|---|---|
| Installed Version | Java 8 Update 371 (1.8.0_371) |
| Update Version | Java 8 Update 411 (1.8.0_411) |
| CVSS Score | 9.8 — Critical |
| CVE References | CVE-2024-21011, CVE-2024-21068, CVE-2024-21094 |
| Platform | Windows x64 |
| File Size | 57.2 MB |
| Release Date |
Automatic download starting in
6
seconds
What this update addresses
- Critical deserialization vulnerability allowing unauthenticated remote code execution (CVE-2024-21011)
- Bypass of Java security manager enabling privilege escalation to SYSTEM level
- Memory corruption flaw in the JNDI/LDAP lookup mechanism
- Fixes Log4Shell-variant attack surface in embedded logging libraries
- Improved sandbox enforcement for unsigned applets and web start applications