[CLSA-2023:1700593371] Fix CVE(s): CVE-2023-22045, CVE-2023-22049
Type:
security
Severity:
Low
Release date:
2023-11-21 19:02:58 UTC
Description:
* Backport upstream releases 8u382 to 16.04 LTS * CVEs fixed in 8u382: - CVE-2023-22045: OpenJDK incorrectly handled array accesses. - CVE-2023-22049: OpenJDK incorrectly sanitized URIs strings.
Updated packages:
  • openjdk-8-demo_8u382-ga-0ubuntu1~16.04+tuxcare.els1_amd64.deb
    sha:2ba296c2f6f635fbcdd2862bb3975622cb78c0fb
  • openjdk-8-doc_8u382-ga-0ubuntu1~16.04+tuxcare.els1_all.deb
    sha:fd34bb95a7ea2c8a2e8fa6b5cee6261f3bae0f49
  • openjdk-8-jdk_8u382-ga-0ubuntu1~16.04+tuxcare.els1_amd64.deb
    sha:d1424b8fbdbf5729051caac5addab7f1b2ee9122
  • openjdk-8-jdk-headless_8u382-ga-0ubuntu1~16.04+tuxcare.els1_amd64.deb
    sha:5b454901ee3ffc368337bac35ff6c270f07ac44e
  • openjdk-8-jre_8u382-ga-0ubuntu1~16.04+tuxcare.els1_amd64.deb
    sha:9e4a16bf65895cc7fc12828396861ed51f3ba50c
  • openjdk-8-jre-headless_8u382-ga-0ubuntu1~16.04+tuxcare.els1_amd64.deb
    sha:86ff6fd72e3ba0015ea25cf9e55ba423b4cb478b
  • openjdk-8-jre-jamvm_8u382-ga-0ubuntu1~16.04+tuxcare.els1_amd64.deb
    sha:827a2133183ca16d91f886cccaa8c29722875120
  • openjdk-8-jre-zero_8u382-ga-0ubuntu1~16.04+tuxcare.els1_amd64.deb
    sha:9f54db622ed2fd0c3662836dd4b495f72bec4c01
  • openjdk-8-source_8u382-ga-0ubuntu1~16.04+tuxcare.els1_all.deb
    sha:d8697b4aee2ebba8fbe7c22e0991fc288f8befe9
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.