ELSA-2024-1828

ELSA-2024-1828 - java-21-openjdk security update

Type:SECURITY
Severity:MODERATE
Release Date:2024-04-23

Description


[1:21.0.3.0.9-1.0.1]
- Add Oracle vendor bug URL [Orabug: 34340155]

[1:21.0.3.0.9-1]
- Update to jdk-21.0.3+9 (GA)
- Update release notes to 21.0.3+9
- Switch to GA mode.
- Sync the copy of the portable specfile with the latest update
- ** This tarball is embargoed until 2024-04-16 @ 1pm PT. **
- Resolves: RHEL-32405

[1:21.0.3.0.7-0.1.ea]
- Update to jdk-21.0.3+7 (EA)
- Update release notes to 21.0.3+7
- Require tzdata 2024a due to upstream inclusion of JDK-8322725
- Only require tzdata 2023d for now as 2024a is unavailable in buildroot
- Drop JDK-8009550 which is now available upstream
- Re-generate FIPS patch against 21.0.3+7 following backport of JDK-8325254
- Resolves: RHEL-30944

[1:21.0.3.0.1-0.2.ea]
- Invoke xz in multi-threaded mode
- generate_source_tarball.sh: Add WITH_TEMP environment variable
- generate_source_tarball.sh: Multithread xz on all available cores
- generate_source_tarball.sh: Add OPENJDK_LATEST environment variable
- generate_source_tarball.sh: Update comment about tarball naming
- generate_source_tarball.sh: Reformat comment header
- generate_source_tarball.sh: Reformat and update help output
- generate_source_tarball.sh: Do a shallow clone, for speed
- generate_source_tarball.sh: Append -ea designator when required
- generate_source_tarball.sh: Eliminate some removal prompting
- generate_source_tarball.sh: Make tarball reproducible
- generate_source_tarball.sh: Prefix temporary directory with temp-
- generate_source_tarball.sh: Remove temporary directory exit conditions
- generate_source_tarball.sh: Fix -ea logic to add dash
- generate_source_tarball.sh: Set compile-command in Emacs
- generate_source_tarball.sh: Remove REPO_NAME from FILE_NAME_ROOT
- generate_source_tarball.sh: Move PROJECT_NAME and REPO_NAME checks
- generate_source_tarball.sh: shellcheck: Remove x-prefixes since we use Bash (SC2268)
- generate_source_tarball.sh: shellcheck: Double-quote variable references (SC2086)
- generate_source_tarball.sh: shellcheck: Do not use -a (SC2166)
- generate_source_tarball.sh: shellcheck: Do not use $ on arithmetic variables (SC2004)
- Use backward-compatible patch syntax
- generate_source_tarball.sh: Ignore -ga tags with OPENJDK_LATEST
- generate_source_tarball.sh: Fix whitespace
- generate_source_tarball.sh: Remove trailing period in echo
- generate_source_tarball.sh: Use long-style argument to grep
- generate_source_tarball.sh: Add license
- generate_source_tarball.sh: Add indentation instructions for Emacs
- Related: RHEL-30944

[1:21.0.3.0.1-0.2.ea]
- Install alt-java man page from the misc tarball as it is no longer in the JDK image
- generate_source_tarball.sh: Update examples in header for clarity
- generate_source_tarball.sh: Cleanup message issued when checkout already exists
- generate_source_tarball.sh: Create directory in TMPDIR when using WITH_TEMP
- generate_source_tarball.sh: Only add --depth=1 on non-local repositories
- Move maintenance scripts to a scripts subdirectory
- discover_trees.sh: Set compile-command and indentation instructions for Emacs
- discover_trees.sh: shellcheck: Do not use -o (SC2166)
- discover_trees.sh: shellcheck: Remove x-prefixes since we use Bash (SC2268)
- discover_trees.sh: shellcheck: Double-quote variable references (SC2086)
- generate_source_tarball.sh: Add authorship
- icedtea_sync.sh: Set compile-command and indentation instructions for Emacs
- icedtea_sync.sh: shellcheck: Double-quote variable references (SC2086)
- icedtea_sync.sh: shellcheck: Remove x-prefixes since we use Bash (SC2268)
- openjdk_news.sh: Set compile-command and indentation instructions for Emacs
- openjdk_news.sh: shellcheck: Double-quote variable references (SC2086)
- openjdk_news.sh: shellcheck: Remove x-prefixes since we use Bash (SC2268)
- openjdk_news.sh: shellcheck: Remove deprecated egrep usage (SC2196)
- generate_source_tarball.sh: Output values of new options WITH_TEMP and OPENJDK_LATEST
- generate_source_tarball.sh: Double-quote DEPTH reference (SC2086)
- generate_source_tarball.sh: Avoid empty DEPTH reference while still appeasing shellcheck
- Related: RHEL-30944

[1:21.0.3.0.1-0.1.ea]
- Update to jdk-21.0.3+1 (EA)
- Update release notes to 21.0.3+1
- Switch to EA mode
- Require tzdata 2023d due to upstream inclusion of JDK-8322725
- Bump FreeType version to 2.13.2 following JDK-8316028
- Related: RHEL-30944

[1:21.0.2.0.13-2]
- Sync the copy of the portable specfile with the latest update
- Define portablesuffix according to whether pkgos is defined or not
- Related: RHEL-30944


Related CVEs


CVE-2024-21068
CVE-2024-21012
CVE-2024-21011

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) java-21-openjdk-21.0.3.0.9-1.0.1.el8.src.rpm3484ba70e62679225240f0b60ef044f2-ol8_aarch64_appstream
java-21-openjdk-21.0.3.0.9-1.0.1.el8.src.rpm3484ba70e62679225240f0b60ef044f2-ol8_aarch64_codeready_builder
java-21-openjdk-21.0.3.0.9-1.0.1.el8.aarch64.rpm7562ba72a460cc618c3440571cf01af3-ol8_aarch64_appstream
java-21-openjdk-demo-21.0.3.0.9-1.0.1.el8.aarch64.rpm9f07a381e03ee512e5de192aa027c7b8-ol8_aarch64_appstream
java-21-openjdk-demo-fastdebug-21.0.3.0.9-1.0.1.el8.aarch64.rpm09755663209769598fa7125062812631-ol8_aarch64_codeready_builder
java-21-openjdk-demo-slowdebug-21.0.3.0.9-1.0.1.el8.aarch64.rpmda0f7d962a3bc3b116dbbac23fe189a7-ol8_aarch64_codeready_builder
java-21-openjdk-devel-21.0.3.0.9-1.0.1.el8.aarch64.rpmdcd5d5068d1cd0664639b466e07a1060-ol8_aarch64_appstream
java-21-openjdk-devel-fastdebug-21.0.3.0.9-1.0.1.el8.aarch64.rpm89b6a29a846e050ea528598fdbb22000-ol8_aarch64_codeready_builder
java-21-openjdk-devel-slowdebug-21.0.3.0.9-1.0.1.el8.aarch64.rpmc81f60362f8921b2647dfb9dd102151e-ol8_aarch64_codeready_builder
java-21-openjdk-fastdebug-21.0.3.0.9-1.0.1.el8.aarch64.rpm14e1adf98c73aa9ccc83369f8cfe9121-ol8_aarch64_codeready_builder
java-21-openjdk-headless-21.0.3.0.9-1.0.1.el8.aarch64.rpma7f2937208f3c6f2131656ca22e9dc57-ol8_aarch64_appstream
java-21-openjdk-headless-fastdebug-21.0.3.0.9-1.0.1.el8.aarch64.rpm51c669e7fc21e7a597ae51b570daac44-ol8_aarch64_codeready_builder
java-21-openjdk-headless-slowdebug-21.0.3.0.9-1.0.1.el8.aarch64.rpm4cb88edbf50f20d2987b180f2e71602f-ol8_aarch64_codeready_builder
java-21-openjdk-javadoc-21.0.3.0.9-1.0.1.el8.aarch64.rpmc6af31a30a6239de07df5752b0852abb-ol8_aarch64_appstream
java-21-openjdk-javadoc-zip-21.0.3.0.9-1.0.1.el8.aarch64.rpmebf90bcdee165e0251336e1af044b8ad-ol8_aarch64_appstream
java-21-openjdk-jmods-21.0.3.0.9-1.0.1.el8.aarch64.rpm47dacf86cc6af2929655f052b576292d-ol8_aarch64_appstream
java-21-openjdk-jmods-fastdebug-21.0.3.0.9-1.0.1.el8.aarch64.rpm77b06ee96c398f3b252ca09fd349929b-ol8_aarch64_codeready_builder
java-21-openjdk-jmods-slowdebug-21.0.3.0.9-1.0.1.el8.aarch64.rpmb8fece7af79a943a6ed726abce8b20cd-ol8_aarch64_codeready_builder
java-21-openjdk-slowdebug-21.0.3.0.9-1.0.1.el8.aarch64.rpm959eb86ff9ba331dea19e4af8b97c02f-ol8_aarch64_codeready_builder
java-21-openjdk-src-21.0.3.0.9-1.0.1.el8.aarch64.rpm4c58f67d0697d80ff5de8bb728e03211-ol8_aarch64_appstream
java-21-openjdk-src-fastdebug-21.0.3.0.9-1.0.1.el8.aarch64.rpm928c62618f78d21fbeb9860caa469039-ol8_aarch64_codeready_builder
java-21-openjdk-src-slowdebug-21.0.3.0.9-1.0.1.el8.aarch64.rpm3b50b47d806c4876e9c6cea7e827354c-ol8_aarch64_codeready_builder
java-21-openjdk-static-libs-21.0.3.0.9-1.0.1.el8.aarch64.rpm8fac8c60fd5831ff80f94ad023a0b0ca-ol8_aarch64_appstream
java-21-openjdk-static-libs-fastdebug-21.0.3.0.9-1.0.1.el8.aarch64.rpm59e0058c1b6ffd21f4ce67965a692afc-ol8_aarch64_codeready_builder
java-21-openjdk-static-libs-slowdebug-21.0.3.0.9-1.0.1.el8.aarch64.rpm95d12ba6629c411e261cb6e85bdcb7e5-ol8_aarch64_codeready_builder
Oracle Linux 8 (x86_64) java-21-openjdk-21.0.3.0.9-1.0.1.el8.src.rpm3484ba70e62679225240f0b60ef044f2-ol8_x86_64_appstream
java-21-openjdk-21.0.3.0.9-1.0.1.el8.src.rpm3484ba70e62679225240f0b60ef044f2-ol8_x86_64_codeready_builder
java-21-openjdk-21.0.3.0.9-1.0.1.el8.x86_64.rpme47794c64396559e09413e09da59ce7c-ol8_x86_64_appstream
java-21-openjdk-demo-21.0.3.0.9-1.0.1.el8.x86_64.rpm253e713f8241d985f04a4b8fb065920d-ol8_x86_64_appstream
java-21-openjdk-demo-fastdebug-21.0.3.0.9-1.0.1.el8.x86_64.rpm255a800721c594b59352ed32f29ed957-ol8_x86_64_codeready_builder
java-21-openjdk-demo-slowdebug-21.0.3.0.9-1.0.1.el8.x86_64.rpm594bd23bf613769c0819f787a8ad1c62-ol8_x86_64_codeready_builder
java-21-openjdk-devel-21.0.3.0.9-1.0.1.el8.x86_64.rpma7bd6831fc0f3925292153d42e6dc685-ol8_x86_64_appstream
java-21-openjdk-devel-fastdebug-21.0.3.0.9-1.0.1.el8.x86_64.rpm8a9e3aafe530bbe8830dee1fff0ed397-ol8_x86_64_codeready_builder
java-21-openjdk-devel-slowdebug-21.0.3.0.9-1.0.1.el8.x86_64.rpmeefd3f9a3a56ad655de73166c44b1494-ol8_x86_64_codeready_builder
java-21-openjdk-fastdebug-21.0.3.0.9-1.0.1.el8.x86_64.rpm20282f4cf18b4e766d3068a01f08b16e-ol8_x86_64_codeready_builder
java-21-openjdk-headless-21.0.3.0.9-1.0.1.el8.x86_64.rpmc38936462e1affb445503c8185977322-ol8_x86_64_appstream
java-21-openjdk-headless-fastdebug-21.0.3.0.9-1.0.1.el8.x86_64.rpmbed37e833005d9c640931c904eef1cad-ol8_x86_64_codeready_builder
java-21-openjdk-headless-slowdebug-21.0.3.0.9-1.0.1.el8.x86_64.rpmb79cd45ce891c03b30a0af2a5aa09569-ol8_x86_64_codeready_builder
java-21-openjdk-javadoc-21.0.3.0.9-1.0.1.el8.x86_64.rpm356929f082956370c0ea76910e72ab70-ol8_x86_64_appstream
java-21-openjdk-javadoc-zip-21.0.3.0.9-1.0.1.el8.x86_64.rpmfc66dfbab5253f83ec1599c41c6979e3-ol8_x86_64_appstream
java-21-openjdk-jmods-21.0.3.0.9-1.0.1.el8.x86_64.rpm33d16344960ee02fb33c70141dcd03bc-ol8_x86_64_appstream
java-21-openjdk-jmods-fastdebug-21.0.3.0.9-1.0.1.el8.x86_64.rpm0242647202732e341c83b73b4d48100c-ol8_x86_64_codeready_builder
java-21-openjdk-jmods-slowdebug-21.0.3.0.9-1.0.1.el8.x86_64.rpme63a2ceb4b99a05c24e4725c432e9255-ol8_x86_64_codeready_builder
java-21-openjdk-slowdebug-21.0.3.0.9-1.0.1.el8.x86_64.rpma2d79209b79ba937ff4b07c25463f93e-ol8_x86_64_codeready_builder
java-21-openjdk-src-21.0.3.0.9-1.0.1.el8.x86_64.rpmed5f11404976db0158429bff9e89d966-ol8_x86_64_appstream
java-21-openjdk-src-fastdebug-21.0.3.0.9-1.0.1.el8.x86_64.rpm1220219491fdc7a04f05accdf5693d56-ol8_x86_64_codeready_builder
java-21-openjdk-src-slowdebug-21.0.3.0.9-1.0.1.el8.x86_64.rpm0062a5c4752f26126d7149a397f76151-ol8_x86_64_codeready_builder
java-21-openjdk-static-libs-21.0.3.0.9-1.0.1.el8.x86_64.rpm0833b50fb547b8e987ac9dd26f383785-ol8_x86_64_appstream
java-21-openjdk-static-libs-fastdebug-21.0.3.0.9-1.0.1.el8.x86_64.rpm3a3afa0cb9048d668842dba050b448db-ol8_x86_64_codeready_builder
java-21-openjdk-static-libs-slowdebug-21.0.3.0.9-1.0.1.el8.x86_64.rpm171f511c95953263e995154e74ce5b31-ol8_x86_64_codeready_builder
Oracle Linux 9 (aarch64) java-21-openjdk-21.0.3.0.9-1.0.1.el9.src.rpmaaa8080eb101af07f1f5e0d9b87c6edd-ol9_aarch64_appstream
java-21-openjdk-21.0.3.0.9-1.0.1.el9.src.rpmaaa8080eb101af07f1f5e0d9b87c6edd-ol9_aarch64_codeready_builder
java-21-openjdk-21.0.3.0.9-1.0.1.el9.aarch64.rpm2f32869dbf1a0bf044b01dbb927de63c-ol9_aarch64_appstream
java-21-openjdk-demo-21.0.3.0.9-1.0.1.el9.aarch64.rpmc3f398636d38530226e010225f155a45-ol9_aarch64_appstream
java-21-openjdk-demo-fastdebug-21.0.3.0.9-1.0.1.el9.aarch64.rpmb696a415b73eb4573bc11d40c68337d2-ol9_aarch64_codeready_builder
java-21-openjdk-demo-slowdebug-21.0.3.0.9-1.0.1.el9.aarch64.rpmf58248bd0c2dbdc9b70b8c79b150f48c-ol9_aarch64_codeready_builder
java-21-openjdk-devel-21.0.3.0.9-1.0.1.el9.aarch64.rpm496c0543bb055908ff51155db8719533-ol9_aarch64_appstream
java-21-openjdk-devel-fastdebug-21.0.3.0.9-1.0.1.el9.aarch64.rpm2edf29868709321c6f87ccefc1eb6827-ol9_aarch64_codeready_builder
java-21-openjdk-devel-slowdebug-21.0.3.0.9-1.0.1.el9.aarch64.rpmccf5b1a88f2c974dda0ca181db1f6ce8-ol9_aarch64_codeready_builder
java-21-openjdk-fastdebug-21.0.3.0.9-1.0.1.el9.aarch64.rpm1928d30224dd9cbeca77955e5cffaa77-ol9_aarch64_codeready_builder
java-21-openjdk-headless-21.0.3.0.9-1.0.1.el9.aarch64.rpm5964cdadadff981ee68a277238eff282-ol9_aarch64_appstream
java-21-openjdk-headless-fastdebug-21.0.3.0.9-1.0.1.el9.aarch64.rpm12a90f2ed80d2b9b586c583538ae9675-ol9_aarch64_codeready_builder
java-21-openjdk-headless-slowdebug-21.0.3.0.9-1.0.1.el9.aarch64.rpmfc8c3e2cac624e00f039d2de81e63a9b-ol9_aarch64_codeready_builder
java-21-openjdk-javadoc-21.0.3.0.9-1.0.1.el9.aarch64.rpmc4707992b8267106ffd036ec17d86bcf-ol9_aarch64_appstream
java-21-openjdk-javadoc-zip-21.0.3.0.9-1.0.1.el9.aarch64.rpm067477561c542571d8e236872a9845d5-ol9_aarch64_appstream
java-21-openjdk-jmods-21.0.3.0.9-1.0.1.el9.aarch64.rpmdb87af477d1cde418d987997b64a2528-ol9_aarch64_appstream
java-21-openjdk-jmods-fastdebug-21.0.3.0.9-1.0.1.el9.aarch64.rpmce5c1d5b9d643950ff310f2914f7a8e4-ol9_aarch64_codeready_builder
java-21-openjdk-jmods-slowdebug-21.0.3.0.9-1.0.1.el9.aarch64.rpmc624f60d4f240cfa460c6a86cb17c5aa-ol9_aarch64_codeready_builder
java-21-openjdk-slowdebug-21.0.3.0.9-1.0.1.el9.aarch64.rpmedf1c30c2857138e48d1df25670f94bd-ol9_aarch64_codeready_builder
java-21-openjdk-src-21.0.3.0.9-1.0.1.el9.aarch64.rpmd329c021b0be712e24c4580351e46b60-ol9_aarch64_appstream
java-21-openjdk-src-fastdebug-21.0.3.0.9-1.0.1.el9.aarch64.rpm8ca2bc657b5a7080ddfcad649fa254e4-ol9_aarch64_codeready_builder
java-21-openjdk-src-slowdebug-21.0.3.0.9-1.0.1.el9.aarch64.rpm2617b7e2c215dfab2a3f3b9593730d79-ol9_aarch64_codeready_builder
java-21-openjdk-static-libs-21.0.3.0.9-1.0.1.el9.aarch64.rpma516a5a83a4d47249c7634b7e9c47fff-ol9_aarch64_appstream
java-21-openjdk-static-libs-fastdebug-21.0.3.0.9-1.0.1.el9.aarch64.rpme0ca2c436a9568e698ffc6d966c61755-ol9_aarch64_codeready_builder
java-21-openjdk-static-libs-slowdebug-21.0.3.0.9-1.0.1.el9.aarch64.rpmf760d2c02db5d51b56c0bdd569c02a9b-ol9_aarch64_codeready_builder
Oracle Linux 9 (x86_64) java-21-openjdk-21.0.3.0.9-1.0.1.el9.src.rpmaaa8080eb101af07f1f5e0d9b87c6edd-ol9_x86_64_appstream
java-21-openjdk-21.0.3.0.9-1.0.1.el9.src.rpmaaa8080eb101af07f1f5e0d9b87c6edd-ol9_x86_64_codeready_builder
java-21-openjdk-21.0.3.0.9-1.0.1.el9.x86_64.rpm1e506b29ba3140049befab46bb8f378e-ol9_x86_64_appstream
java-21-openjdk-demo-21.0.3.0.9-1.0.1.el9.x86_64.rpma8e8d5844c78c7a0ac28de7bc568be21-ol9_x86_64_appstream
java-21-openjdk-demo-fastdebug-21.0.3.0.9-1.0.1.el9.x86_64.rpmb4e1dda201b7d75468e2db85e9bc0cbf-ol9_x86_64_codeready_builder
java-21-openjdk-demo-slowdebug-21.0.3.0.9-1.0.1.el9.x86_64.rpm6ca98d70f72fd9bf19ec71c75c9a0102-ol9_x86_64_codeready_builder
java-21-openjdk-devel-21.0.3.0.9-1.0.1.el9.x86_64.rpm813c5aee5715b071d60545b1ecef1fa2-ol9_x86_64_appstream
java-21-openjdk-devel-fastdebug-21.0.3.0.9-1.0.1.el9.x86_64.rpm19bc4fafce0f6511023c2af689afb5db-ol9_x86_64_codeready_builder
java-21-openjdk-devel-slowdebug-21.0.3.0.9-1.0.1.el9.x86_64.rpme0e4ac3e751762ccb15e93dcd44e4aa7-ol9_x86_64_codeready_builder
java-21-openjdk-fastdebug-21.0.3.0.9-1.0.1.el9.x86_64.rpmb26c7261291c95c9e14b174ab0c48c1d-ol9_x86_64_codeready_builder
java-21-openjdk-headless-21.0.3.0.9-1.0.1.el9.x86_64.rpm6ec32122a8663df462274f85a1b8021a-ol9_x86_64_appstream
java-21-openjdk-headless-fastdebug-21.0.3.0.9-1.0.1.el9.x86_64.rpm309cbf59983c7c55fa73cff190deecd9-ol9_x86_64_codeready_builder
java-21-openjdk-headless-slowdebug-21.0.3.0.9-1.0.1.el9.x86_64.rpmf22b0a07de9f8c81c8cc685bee347e66-ol9_x86_64_codeready_builder
java-21-openjdk-javadoc-21.0.3.0.9-1.0.1.el9.x86_64.rpme837838a6926c84e3a6c1c0a5e083d80-ol9_x86_64_appstream
java-21-openjdk-javadoc-zip-21.0.3.0.9-1.0.1.el9.x86_64.rpmfadee35e52018e8e10d970fd6949c4e7-ol9_x86_64_appstream
java-21-openjdk-jmods-21.0.3.0.9-1.0.1.el9.x86_64.rpm86b1e06382348ae84a37c69138c3f2bb-ol9_x86_64_appstream
java-21-openjdk-jmods-fastdebug-21.0.3.0.9-1.0.1.el9.x86_64.rpmf23d43909970c064148dbb825917d16c-ol9_x86_64_codeready_builder
java-21-openjdk-jmods-slowdebug-21.0.3.0.9-1.0.1.el9.x86_64.rpmff829efcecd2c94cf9087679a8ac111e-ol9_x86_64_codeready_builder
java-21-openjdk-slowdebug-21.0.3.0.9-1.0.1.el9.x86_64.rpmedf7b2da6aba06943b0d68cff0d557fc-ol9_x86_64_codeready_builder
java-21-openjdk-src-21.0.3.0.9-1.0.1.el9.x86_64.rpm8b5595a911c10cda89d536c8a31a498b-ol9_x86_64_appstream
java-21-openjdk-src-fastdebug-21.0.3.0.9-1.0.1.el9.x86_64.rpm9f5c67122ef302e27eb3e7f094ef361e-ol9_x86_64_codeready_builder
java-21-openjdk-src-slowdebug-21.0.3.0.9-1.0.1.el9.x86_64.rpm982cc0b024dca8f762e7b4f5e39703a3-ol9_x86_64_codeready_builder
java-21-openjdk-static-libs-21.0.3.0.9-1.0.1.el9.x86_64.rpm30a03e1f852f1fbc11bcd06d84ed0028-ol9_x86_64_appstream
java-21-openjdk-static-libs-fastdebug-21.0.3.0.9-1.0.1.el9.x86_64.rpm14b7719779e9ce5e696e64f86f26f363-ol9_x86_64_codeready_builder
java-21-openjdk-static-libs-slowdebug-21.0.3.0.9-1.0.1.el9.x86_64.rpmc3030ebcd6cef0c1d8ddf7d40395220a-ol9_x86_64_codeready_builder



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete