[CLSA-2025:1753730595] java-17-openjdk: Fix of 25 CVEs
Type:
security
Severity:
Important
Release date:
2025-07-28 19:23:19 UTC
Description:
- Update to jdk-17.0.15+6 - Set bundled freetype provide version to 2.13.2 - Set bundled harfbuzz provide version to 8.2.2 - Require tzdata-java 2025a at runtime and for build - CVE-2025-21502: fix Hotspot component vulnerability allowing unauthorized access to resources and exposure of sensitive information - CVE-2025-30698: fix 2D component vulnerability allowing unauthorized data access and partial denial of service - CVE-2025-30691: fix Compiler component vulnerability allowing unauthorized data access and modification (CVSS 4.8 Medium) - CVE-2025-21587: fix JSSE component vulnerability allowing unauthorized creation/deletion/modification of critical data - CVE-2024-20921: fix information disclosure in Hotspot that allows remote attackers to access sensitive data via untrusted input through exposed APIs or sandboxed environments - CVE-2024-21235: fix vulnerability in Hotspot that allows remote attackers to read or modify limited data via untrusted input through exposed APIs or sandboxed code - CVE-2024-21217: fix vulnerability in Serialization that allows remote attackers to trigger partial denial of service via untrusted input through exposed APIs or sandboxed code - CVE-2024-21210: fix vulnerability in Hotspot that allows remote attackers to modify limited data via untrusted input through exposed APIs or sandboxed code. - CVE-2024-21208: fix security vulnerability in OpenJDK component - CVE-2024-21147: fix Hotspot component vulnerability allowing unauthorized data access - CVE-2024-21145: fix 2D component vulnerability allowing unauthorized data access - CVE-2024-21144: fix security vulnerability in OpenJDK component - CVE-2024-21140: fix Hotspot component vulnerability - CVE-2024-21138: fix Hotspot component vulnerability causing partial denial of service - CVE-2024-21131: fix vulnerability in Hotspot that allows remote attackers to modify limited data via untrusted input through exposed APIs or sandboxed code - CVE-2024-21094: fix Hotspot component vulnerability allowing unauthorized data modification - CVE-2024-21085: fix Concurrency component vulnerability causing partial denial of service - CVE-2024-21068: fix Hotspot component vulnerability allowing unauthorized data access - CVE-2024-21011: fix Hotspot component vulnerability causing partial denial of service - CVE-2024-20918: fix information disclosure and data modification in Hotspot via untrusted input - CVE-2024-20952: fix information disclosure and data modification in Security via untrusted input - CVE-2024-20926: fix information disclosure in Scripting via untrusted input - CVE-2023-48161: fix buffer overflow in GifLib’s DumpSCreen2RGB function allowing local attackers to access sensitive information - CVE-2023-22025: fix data modification in Hotspot via untrusted input through exposed APIs or sandboxed code - CVE-2023-25193: fix O(n^2) growth vulnerability in HarfBuzz's hb-ot-layout-gsubgpos.hh when processing consecutive marks
Updated packages:
  • java-17-openjdk-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:5eace55212b931a9b99c60d9166af590e31f45239c1ca8ae0f568bd3e681b453
  • java-17-openjdk-demo-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:03f6004800214f6e6f6285fded99c2c284b3de186d8fc827e4bf088685130694
  • java-17-openjdk-demo-fastdebug-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:9243cdf0a892948d190100b905d67b511c1d803cda1e9e14fd37503cb18aa6f2
  • java-17-openjdk-demo-slowdebug-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:b791e50fdf9540231a25a05f0dbca63fd52f7ae97d9e7be799f067a44df28468
  • java-17-openjdk-devel-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:d992728035226a89641a566c3b6e717ede45bbd68189821ab1bca37eab3c8573
  • java-17-openjdk-devel-fastdebug-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:93bbf55de976ad1eff9d49a6d1a7061d56c062eb67dff758dc2cbb0cbb12b1b4
  • java-17-openjdk-devel-slowdebug-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:35172f2c7654eaef80d12b380d49f8fb973eee633673d5d78fb4401f9f157616
  • java-17-openjdk-fastdebug-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:cbfc9daa74512f24587ae57d1079c16c7731b9a0f26fc4bfef20447960be4625
  • java-17-openjdk-headless-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:5a64f590f5d097383d431062223e80de9c692b6e86edac58f77ca8c6fe60ff99
  • java-17-openjdk-headless-fastdebug-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:7a41090d373e35694132680f5d8cbe4ff6802d70506032c4330358b1dda46198
  • java-17-openjdk-headless-slowdebug-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:d175876e8dccf05a015156def1dd0662281da1b4d3fe6d43de4160de4f7cccec
  • java-17-openjdk-javadoc-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:0c14bec9acfd72a28794297884e1d7ab3b60d591bea481d3b0a88347515ab0a2
  • java-17-openjdk-javadoc-zip-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:4ac5516d40f5bfcb05f92ab12013d70eb1d8963e19de061a874fee5a4fbc1f5a
  • java-17-openjdk-jmods-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:16b36a4c1b8dacb9b29d2d1b2f16fa2ffdde296810121f73871cfff1e83de76b
  • java-17-openjdk-jmods-fastdebug-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:5e3c1a49e9d878d5b7891a0d2e6da0120f86ba588364ada0915c489b84661044
  • java-17-openjdk-jmods-slowdebug-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:0277946c272ba36f0a2ca8e36bad8ae1563225cf57aef1d8aa4b602d2c6a9aae
  • java-17-openjdk-slowdebug-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:0855edfcfef1c51abc1b0b2cd6c84e594fa77f6e3c982ae0a650c18a80f20a51
  • java-17-openjdk-src-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:6f70578b990e8ab7a39f15b3df8cf1248b56d6ec816ddc77007d5b273e0baf2a
  • java-17-openjdk-src-fastdebug-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:501fdec0766abfa34bc6335dda8c0192a4539b8d0a7cff47492c3f69f73e5c03
  • java-17-openjdk-src-slowdebug-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:061b0077b677494b743de8c3222e723330d2bdd1a1f0cf3a88f413b1052a9a52
  • java-17-openjdk-static-libs-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:89ebcc129572c0023497571135f45cc0e8ff6c81600489ad7cffc4a19fdd9a64
  • java-17-openjdk-static-libs-fastdebug-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:628be707190bb8bb0be9d289246847307bd0d0d225314256e31fb982b0c64f92
  • java-17-openjdk-static-libs-slowdebug-17.0.15.0.6-1.el9.tuxcare.els1.x86_64.rpm
    sha:89f57b033f8e2ab4f6798983a186879283fe47106e550a5968703ce41ffa9f90
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.