[CLSA-2023:1691082065] java-1.8.0-openjdk: Fix of 2 CVEs
Type:
security
Severity:
Low
Release date:
2023-08-03
Description:
- Upgrade to openjdk-shenandoah-jdk8u-shenandoah-jdk8u382-b05. That fixes following CVEs: - CVE-2023-22045: Array indexing integer overflow issue. (8304468) - CVE-2023-22049: Improper handling of slash characters in URI-to-path conversion (8305312) - Remove patch for pkcs11 cause issue was fixed in sources
Updated packages:
  • java-1.8.0-openjdk-1.8.0.382.b05-1.el6.tuxcare.els1.x86_64.rpm
    sha:d3b6985bd99e6ec0440e4ce52ac4c061063a4134
  • java-1.8.0-openjdk-debug-1.8.0.382.b05-1.el6.tuxcare.els1.x86_64.rpm
    sha:51187ea32551aede3ac7eb050b958132cc9d7612
  • java-1.8.0-openjdk-demo-1.8.0.382.b05-1.el6.tuxcare.els1.x86_64.rpm
    sha:ab0a864e3d01ad943cc04b7f9b33bd3506a7f588
  • java-1.8.0-openjdk-demo-debug-1.8.0.382.b05-1.el6.tuxcare.els1.x86_64.rpm
    sha:a80f4c4a6b0ad451bee73a48a0bebedbeac125ef
  • java-1.8.0-openjdk-devel-1.8.0.382.b05-1.el6.tuxcare.els1.x86_64.rpm
    sha:71ab795cccbf088883561ed43ddead2000df83b7
  • java-1.8.0-openjdk-devel-debug-1.8.0.382.b05-1.el6.tuxcare.els1.x86_64.rpm
    sha:ada551c20ba32f0d6d2734f86ab1a546e649eed2
  • java-1.8.0-openjdk-headless-1.8.0.382.b05-1.el6.tuxcare.els1.x86_64.rpm
    sha:93178846dc7f4df7b1e2860e7074dce01cd38638
  • java-1.8.0-openjdk-headless-debug-1.8.0.382.b05-1.el6.tuxcare.els1.x86_64.rpm
    sha:dc7476afd8a3303ed3e0b4db8c99449fd18a7b8f
  • java-1.8.0-openjdk-javadoc-1.8.0.382.b05-1.el6.tuxcare.els1.noarch.rpm
    sha:bc96f65637e6de6b13d52e4955c1c45b4b089118
  • java-1.8.0-openjdk-javadoc-debug-1.8.0.382.b05-1.el6.tuxcare.els1.noarch.rpm
    sha:18a930255ee3577ea4b704afea3ac40711bf1956
  • java-1.8.0-openjdk-src-1.8.0.382.b05-1.el6.tuxcare.els1.x86_64.rpm
    sha:74ca284592df86cb3832cd77179899b3821bb8d1
  • java-1.8.0-openjdk-src-debug-1.8.0.382.b05-1.el6.tuxcare.els1.x86_64.rpm
    sha:01a72ed86ee9f50c151bc3bec1b8b30a53d226e7
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.