[CLSA-2026:1787214104] java-1.8.0-openjdk: Fix of 6 CVEs
Type:
security
Severity:
Important
Release date:
2026-08-20 11:18:10 UTC
Description:
- Upgrade to openjdk-shenandoah-jdk8u-shenandoah-jdk8u502-b07. That fixes following CVEs: - CVE-2026-46968: JSSE, remote high-complexity integrity flaw in TLS certificate handling - CVE-2026-47010: ImageIO, remote high-complexity low-impact integrity flaw in JPEG handling - CVE-2026-47021: 2D, remote unauth partial DoS via XBM image support - CVE-2026-47027: Libraries, remote unauth partial DoS in Jar file processing - CVE-2026-47057: Scripting, remote unauth DoS via Nashorn index handling - CVE-2026-47058: Scripting, remote high-complexity high-confidentiality and high-integrity flaw in Dataview implementation - CVE-2026-47059: 2D, remote high-complexity low-impact partial DoS in AWT ImagingLib - CVE-2026-47063: Libraries, remote unauth high-integrity flaw in Jar handling - CVE-2026-60147: Security, remote unauth low-impact flaw in certification checking - CVE-2026-41254: Little CMS information disclosure / DoS, fixed by the in-tree LCMS bump to 2.19.1 (this build uses --with-lcms=bundled since RHEL 6 has no lcms2)
Updated packages:
  • java-1.8.0-openjdk-1.8.0.502.b07-1.el6.tuxcare.els1.x86_64.rpm
    sha:4c792ea0673860e328d391ce75156a861f6ab8ef2f34048d6e3349b3a54b2c96
  • java-1.8.0-openjdk-debug-1.8.0.502.b07-1.el6.tuxcare.els1.x86_64.rpm
    sha:133683d3bc43037a5bfd51450ab28bee41955c6f9a35f66eecf057f9dc767b2c
  • java-1.8.0-openjdk-demo-1.8.0.502.b07-1.el6.tuxcare.els1.x86_64.rpm
    sha:6eb25132b0644ba6ba1b1d62651a40a1e3e93cafcd66fbbc9aee95b580eb91a1
  • java-1.8.0-openjdk-demo-debug-1.8.0.502.b07-1.el6.tuxcare.els1.x86_64.rpm
    sha:6f72cd559981e9be85792f1b4a250f7fe8ae79145f33d35aae90bb91acf27766
  • java-1.8.0-openjdk-devel-1.8.0.502.b07-1.el6.tuxcare.els1.x86_64.rpm
    sha:66e533089a43c71aa4218d2735bf86fd16ef506fd25acfb98d1423391f86f44d
  • java-1.8.0-openjdk-devel-debug-1.8.0.502.b07-1.el6.tuxcare.els1.x86_64.rpm
    sha:bb906d38792ab092cc19a6656de30cde7f44db52c634cdd44a5787f77e51d649
  • java-1.8.0-openjdk-headless-1.8.0.502.b07-1.el6.tuxcare.els1.x86_64.rpm
    sha:42b429bbb32c12ecffff3e5c6ed019c2938c9aa3422a5a3b63d3bcb301f904b8
  • java-1.8.0-openjdk-headless-debug-1.8.0.502.b07-1.el6.tuxcare.els1.x86_64.rpm
    sha:2cdf5843ce73d6fd2997b5d7d55bf7fd53079cb1de286c4297690652dac97f23
  • java-1.8.0-openjdk-javadoc-1.8.0.502.b07-1.el6.tuxcare.els1.noarch.rpm
    sha:5fdb7dfaeddec2463defef4614b3d1fb62bf1af2c18b1026ef5c9ea16dbcb73d
  • java-1.8.0-openjdk-javadoc-debug-1.8.0.502.b07-1.el6.tuxcare.els1.noarch.rpm
    sha:3ce8e5ca642cd6c3ed2d2f456c8b39ed472bfe1f42a8b9f367a94908a5bb64ce
  • java-1.8.0-openjdk-src-1.8.0.502.b07-1.el6.tuxcare.els1.x86_64.rpm
    sha:db4890d028c1f077c8940d3a1d37f7716012e617400e185c48ce928f7c979096
  • java-1.8.0-openjdk-src-debug-1.8.0.502.b07-1.el6.tuxcare.els1.x86_64.rpm
    sha:09734ed415a939f09993dcf3113b3ab874ad49882c640d3ceea659903671b225
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.