Описание
Security update for java-17-openjdk
This update for java-17-openjdk fixes the following issues:
Updated to version jdk-17.0.6.0+10:
- CVE-2023-21835: Fixed handshake DoS attack against DTLS connections (bsc#1207246).
- CVE-2023-21843: Fixed soundbank URL remote loading (bsc#1207248).
Bugfixes:
- Avoid calling C_GetInfo() too early, before cryptoki is initialized (bsc#1205916).
Список пакетов
Container bci/openjdk-devel:17
java-17-openjdk-17.0.6.0-150400.3.12.1
java-17-openjdk-devel-17.0.6.0-150400.3.12.1
java-17-openjdk-headless-17.0.6.0-150400.3.12.1
Container bci/openjdk-devel:latest
java-17-openjdk-17.0.6.0-150400.3.12.1
java-17-openjdk-devel-17.0.6.0-150400.3.12.1
java-17-openjdk-headless-17.0.6.0-150400.3.12.1
Container bci/openjdk:17
java-17-openjdk-17.0.6.0-150400.3.12.1
java-17-openjdk-headless-17.0.6.0-150400.3.12.1
Container bci/openjdk:latest
java-17-openjdk-17.0.6.0-150400.3.12.1
java-17-openjdk-headless-17.0.6.0-150400.3.12.1
Container containers/apache-tomcat:10.1-openjdk17
java-17-openjdk-17.0.6.0-150400.3.12.1
java-17-openjdk-headless-17.0.6.0-150400.3.12.1
Container containers/apache-tomcat:9-openjdk17
java-17-openjdk-17.0.6.0-150400.3.12.1
java-17-openjdk-headless-17.0.6.0-150400.3.12.1
Container suse/manager/5.0/x86_64/server:latest
java-17-openjdk-17.0.6.0-150400.3.12.1
java-17-openjdk-headless-17.0.6.0-150400.3.12.1
Container suse/multi-linux-manager/5.1/x86_64/server-attestation:latest
java-17-openjdk-headless-17.0.6.0-150400.3.12.1
Container suse/multi-linux-manager/5.1/x86_64/server:latest
java-17-openjdk-17.0.6.0-150400.3.12.1
java-17-openjdk-headless-17.0.6.0-150400.3.12.1
Image server-attestation-image
java-17-openjdk-headless-17.0.6.0-150400.3.12.1
Image server-image
java-17-openjdk-17.0.6.0-150400.3.12.1
java-17-openjdk-headless-17.0.6.0-150400.3.12.1
SUSE Linux Enterprise Module for Basesystem 15 SP4
java-17-openjdk-17.0.6.0-150400.3.12.1
java-17-openjdk-demo-17.0.6.0-150400.3.12.1
java-17-openjdk-devel-17.0.6.0-150400.3.12.1
java-17-openjdk-headless-17.0.6.0-150400.3.12.1
openSUSE Leap 15.4
java-17-openjdk-17.0.6.0-150400.3.12.1
java-17-openjdk-accessibility-17.0.6.0-150400.3.12.1
java-17-openjdk-demo-17.0.6.0-150400.3.12.1
java-17-openjdk-devel-17.0.6.0-150400.3.12.1
java-17-openjdk-headless-17.0.6.0-150400.3.12.1
java-17-openjdk-javadoc-17.0.6.0-150400.3.12.1
java-17-openjdk-jmods-17.0.6.0-150400.3.12.1
java-17-openjdk-src-17.0.6.0-150400.3.12.1
Ссылки
- Link for SUSE-SU-2023:0435-1
- E-Mail link for SUSE-SU-2023:0435-1
- SUSE Security Ratings
- SUSE Bug 1205916
- SUSE Bug 1207246
- SUSE Bug 1207248
- SUSE CVE CVE-2023-21835 page
- SUSE CVE CVE-2023-21843 page
Описание
unknown
Затронутые продукты
Container bci/openjdk-devel:17:java-17-openjdk-17.0.6.0-150400.3.12.1
Container bci/openjdk-devel:17:java-17-openjdk-devel-17.0.6.0-150400.3.12.1
Container bci/openjdk-devel:17:java-17-openjdk-headless-17.0.6.0-150400.3.12.1
Container bci/openjdk-devel:latest:java-17-openjdk-17.0.6.0-150400.3.12.1
Ссылки
- CVE-2023-21835
- SUSE Bug 1207246
Описание
unknown
Затронутые продукты
Container bci/openjdk-devel:17:java-17-openjdk-17.0.6.0-150400.3.12.1
Container bci/openjdk-devel:17:java-17-openjdk-devel-17.0.6.0-150400.3.12.1
Container bci/openjdk-devel:17:java-17-openjdk-headless-17.0.6.0-150400.3.12.1
Container bci/openjdk-devel:latest:java-17-openjdk-17.0.6.0-150400.3.12.1
Ссылки
- CVE-2023-21843
- SUSE Bug 1207248