Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-8116

Опубликовано: 28 нояб. 2024
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2024-8116: java-1.8.0-openjdk security update (MODERATE)

[1:1.8.0.432.b06-1.0.1]

  • Update to shenandoah8u432-b06 [Orabug: 37185223]
  • Fixes CVE-2024-21208 CVE-2024-21210 CVE-2024-21217 CVE-2024-21235
  • Removed patches
  • 1001-orabug36904359-CVE-2024-21131-fix.patch
  • 1002-orabug36904359-CVE-2024-21138-fix.patch
  • 1003-orabug36904359-CVE-2024-21140-fix-part1.patch
  • 1004-orabug36904359-CVE-2024-21140-fix-part2.patch
  • 1005-orabug36904359-CVE-2024-21140-fix-part3.patch
  • 1006-orabug36904359-CVE-2024-21144-fix.patch
  • 1007-orabug36904359-CVE-2024-21145-fix.patch
  • 1008-orabug36904359-CVE-2024-21147-fix.patch
  • rh1648644-java_access_bridge_privileged_security.patch
  • jdk8186464-rh1433262-zip64_failure.patch
  • rh1684077-openjdk_should_depend_on_pcsc-lite-libs_instead_of_pcsc-lite-devel.patch
  • jdk8199936-pr3533-enable_mstackrealign_on_x86_linux_as_well_as_x86_mac_os_x.patch
  • pr2462-resolve_disabled_warnings_for_libunpack_and_the_unpack200_binary.patch
  • Added following patches:
  • jdk8186464-rh1433262-zip64_failure_ol7.patch
  • rh1684077-openjdk_should_depend_on_pcsc-lite-libs_instead_of_pcsc-lite-devel_ol7.patch
  • jdk8199936-pr3533-enable_mstackrealign_on_x86_linux_as_well_as_x86_mac_os_x_ol7.patch
  • pr2462-resolve_disabled_warnings_for_libunpack_and_the_unpack200_binary_ol7.patch

[1:1.8.0.412.b08-1.0.1]

  • Fixes openjdk below given CVE issues
  • CVE-2024-21131 Improve-UTF8-String-supports
  • CVE-2024-21138 Better-symbol-storage
  • Fixes bad immediate dominator info openjdk bug8262017
  • Fixes malformed control flow openjdk bug8303466
  • CVE-2024-21140 Improved-loop-handling
  • CVE-2024-21144 Enhance-Pack-200-loading
  • CVE-2024-21145 Improve-2D-image-handling
  • CVE-2024-21147 Improve-array-management

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

java-1.8.0-openjdk

1.8.0.432.b06-1.0.1.el7_9

java-1.8.0-openjdk-accessibility

1.8.0.432.b06-1.0.1.el7_9

java-1.8.0-openjdk-demo

1.8.0.432.b06-1.0.1.el7_9

java-1.8.0-openjdk-devel

1.8.0.432.b06-1.0.1.el7_9

java-1.8.0-openjdk-headless

1.8.0.432.b06-1.0.1.el7_9

java-1.8.0-openjdk-javadoc

1.8.0.432.b06-1.0.1.el7_9

java-1.8.0-openjdk-javadoc-zip

1.8.0.432.b06-1.0.1.el7_9

java-1.8.0-openjdk-src

1.8.0.432.b06-1.0.1.el7_9

Oracle Linux x86_64

java-1.8.0-openjdk

1.8.0.432.b06-1.0.1.el7_9

java-1.8.0-openjdk-accessibility

1.8.0.432.b06-1.0.1.el7_9

java-1.8.0-openjdk-demo

1.8.0.432.b06-1.0.1.el7_9

java-1.8.0-openjdk-devel

1.8.0.432.b06-1.0.1.el7_9

java-1.8.0-openjdk-headless

1.8.0.432.b06-1.0.1.el7_9

java-1.8.0-openjdk-javadoc

1.8.0.432.b06-1.0.1.el7_9

java-1.8.0-openjdk-javadoc-zip

1.8.0.432.b06-1.0.1.el7_9

java-1.8.0-openjdk-src

1.8.0.432.b06-1.0.1.el7_9

Связанные уязвимости

rocky
8 месяцев назад

Moderate: java-21-openjdk security update

rocky
8 месяцев назад

Moderate: java-17-openjdk security update

rocky
8 месяцев назад

Moderate: java-11-openjdk security update

rocky
8 месяцев назад

Moderate: java-1.8.0-openjdk security update

oracle-oval
8 месяцев назад

ELSA-2024-8127: java-21-openjdk security update (MODERATE)