[CLSA-2023:1675986068] java-1.8.0-openjdk: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2023-02-09
Description:
- Upgrade to openjdk-shenandoah-jdk8u-shenandoah-jdk8u362-b09. That fixes following CVEs: - CVE-2023-21830: Improper restrictions in CORBA deserialization (Serialization, 8285021) - CVE-2023-21843: Soundbank URL remote loading (Sound, 8293742) - Update tzdata requirement to 2022g to match JDK-8297804 - Remove patches which are in upstream now - Remove the obsolete rh1163501 patch
Updated packages:
  • java-1.8.0-openjdk-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:ab89762b65c05c882f27285809719089b96f99ac
  • java-1.8.0-openjdk-debug-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:c26b015fe977ed0daa9b4e1b554e84c89922158a
  • java-1.8.0-openjdk-demo-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:ea1bef17504c533b46c7a9bde3c17e17c8038129
  • java-1.8.0-openjdk-demo-debug-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:e90ee55c9b26756ffd4116133b39c9b351701bcc
  • java-1.8.0-openjdk-devel-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:35c8c08a41f18d8848a69df583d508f059ca4573
  • java-1.8.0-openjdk-devel-debug-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:695e8f58774dadcd87e113c2b489cc4e8db56999
  • java-1.8.0-openjdk-headless-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:9887189c8ae450597c316ba6b831e1e58d2fe735
  • java-1.8.0-openjdk-headless-debug-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:4ea60475e45d4d27806ffffc5eab6c951cfb8f77
  • java-1.8.0-openjdk-javadoc-1.8.0.362.b09-1.el6.tuxcare.els1.noarch.rpm
    sha:81e499d088180ff98827d9532bc812bdd036185b
  • java-1.8.0-openjdk-javadoc-debug-1.8.0.362.b09-1.el6.tuxcare.els1.noarch.rpm
    sha:d469795557cc2c466173758fa98cc63add69f443
  • java-1.8.0-openjdk-src-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:f6e22514294b874df50e090e8ed621f0f8db20ee
  • java-1.8.0-openjdk-src-debug-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:c8d3d1b239cd0b339bacf1867565ad0ca65b6ea6
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.