[CLSA-2023:1675985852] java-1.8.0-openjdk: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2023-02-09
Description:
- Upgrade to openjdk-shenandoah-jdk8u-shenandoah-jdk8u362-b09. That fixes following CVEs: - CVE-2023-21830: Improper restrictions in CORBA deserialization (Serialization, 8285021) - CVE-2023-21843: Soundbank URL remote loading (Sound, 8293742) - Update tzdata requirement to 2022g to match JDK-8297804 - Remove patches which are in upstream now - Remove the obsolete rh1163501 patch
Updated packages:
  • java-1.8.0-openjdk-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:5afb301cc8d924e2c16d009ef9468b20d19a2600
  • java-1.8.0-openjdk-debug-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:389e4642a00a0e29e9463dfbea13fa43c7204c5c
  • java-1.8.0-openjdk-demo-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:4175b3826b57d4b3d4a88957ffecbb7ced4b0bee
  • java-1.8.0-openjdk-demo-debug-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:dc294e02735e28b7c9a16d9e567af52ba91ba9d7
  • java-1.8.0-openjdk-devel-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:5be4aadec1d36a167694488ee0ad1d97e3e1c3ff
  • java-1.8.0-openjdk-devel-debug-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:b9c471a36e52c194fe84d12bd76052579312c511
  • java-1.8.0-openjdk-headless-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:f15a447c5aa566b5311cf14eb8c4185dd12bbd96
  • java-1.8.0-openjdk-headless-debug-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:1d7ded93928ee8dcb6f549174586953f42e7a7d4
  • java-1.8.0-openjdk-javadoc-1.8.0.362.b09-1.el6.tuxcare.els1.noarch.rpm
    sha:f5e10e960a4150e98a8f240f52e53213d4e12dff
  • java-1.8.0-openjdk-javadoc-debug-1.8.0.362.b09-1.el6.tuxcare.els1.noarch.rpm
    sha:21803baf6da257b1dd0de92806a978ca2dbab0ff
  • java-1.8.0-openjdk-src-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:6a31791a4dddaa496a38a1c7b702d876af010de4
  • java-1.8.0-openjdk-src-debug-1.8.0.362.b09-1.el6.tuxcare.els1.x86_64.rpm
    sha:c45eb00f12ffd840e41890a3df8329d356445793
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.