[CLSA-2025:1755603149] Fix of 5 CVEs
Type:
security
Severity:
Important
Release date:
2025-08-19 11:32:37 UTC
Description:
* OpenJDK 8u462 release - CVE-2025-30749: Java 2D heap corruption, code execution/DoS - CVE-2025-30754: JSSE TLS handshake flaw, weakened encryption - CVE-2025-30761: nashorn sandbox bypass, code execution - CVE-2025-50059: HTTP client header bug, data leak - CVE-2025-50106: Glyph rendering memory bug, crash/code exec - Release notes: https://mail.openjdk.org/pipermail/jdk8u-dev/2025-July/020263.html
Updated packages:
  • openjdk-8-demo_8u462-ga-0ubuntu1~16.04+tuxcare.els1_amd64.deb
    sha:91e712fb8d33fd3bdb0ec0e1b9af9b2852687db2
  • openjdk-8-doc_8u462-ga-0ubuntu1~16.04+tuxcare.els1_all.deb
    sha:fa99dd8d40b539b05719a3da78bf67b60c14d7da
  • openjdk-8-jdk_8u462-ga-0ubuntu1~16.04+tuxcare.els1_amd64.deb
    sha:ac9f1e8debe6f061e0ee5dfb41e040cf502813ff
  • openjdk-8-jdk-headless_8u462-ga-0ubuntu1~16.04+tuxcare.els1_amd64.deb
    sha:b094580a08ea58b41ca2c9c32012f93561c5d171
  • openjdk-8-jre_8u462-ga-0ubuntu1~16.04+tuxcare.els1_amd64.deb
    sha:dbe3f9aff91196785e04b7db4a14c3cd2e7f2d74
  • openjdk-8-jre-headless_8u462-ga-0ubuntu1~16.04+tuxcare.els1_amd64.deb
    sha:65646d3b44840f6e515fd931e47819964aa7bdfb
  • openjdk-8-jre-jamvm_8u462-ga-0ubuntu1~16.04+tuxcare.els1_amd64.deb
    sha:0f0fa5df4da66798d715a1193603462553cc8d13
  • openjdk-8-jre-zero_8u462-ga-0ubuntu1~16.04+tuxcare.els1_amd64.deb
    sha:49ca037cf4a559d22d13ad84bb9ff9c896a04b6a
  • openjdk-8-source_8u462-ga-0ubuntu1~16.04+tuxcare.els1_all.deb
    sha:f63b822c4229ac48ee693c7ea36ac7814627e593
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.