ELSA-2020-4350

ELSA-2020-4350 - java-1.8.0-openjdk security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2020-10-27

Description


[1:1.8.0.272.b10-1]
- Add backport of JDK-8215727: 'Restore JFR thread sampler loop to old / previous behaviour'
- Resolves: rhbz#1876665

[1:1.8.0.272.b10-0]
- Update to aarch64-shenandoah-jdk8u272-b10.
- Switch to GA mode for final release.
- Update release notes for 8u272 release.
- Add backport of JDK-8254177 to update to tzdata 2020b
- Require tzdata 2020b due to resource changes in JDK-8254177
- Delay tzdata 2020b dependency until tzdata update has shipped.
- Adjust JDK-8062808/PR3548 following constantPool.hpp context change in JDK-8243302
- Adjust PR3593 following g1StringDedupTable.cpp context change in JDK-8240124 & JDK-8244955
- This tarball is embargoed until 2020-10-20 @ 1pm PT.
- Resolves: rhbz#1876665

[1:1.8.0.272.b09-0.1.ea]
- Include a test in the RPM to check the build has the correct vendor information.
- Use 'oj_' prefix on new vendor globals to avoid a conflict with RPM's vendor value.
- Improve quoting of vendor name
- Resolves: rhbz#1876665

[1:1.8.0.272.b09-0.1.ea]
- Set vendor property and vendor URLs
- Made URLs to be preconfigured by OS
- Resolves: rhbz#1876665

[1:1.8.0.272.b09-0.0.ea]
- Update to aarch64-shenandoah-jdk8u272-b09 (EA).
- Resolves: rhbz#1876665

[1:1.8.0.272.b08-0.0.ea]
- Update to aarch64-shenandoah-jdk8u272-b08 (EA).
- Resolves: rhbz#1876665

[1:1.8.0.272.b07-0.0.ea]
- Update to aarch64-shenandoah-jdk8u272-b07.
- Resolves: rhbz#1876665

[1:1.8.0.272.b06-0.0.ea]
- Update to aarch64-shenandoah-jdk8u272-b06.
- Update tarball generation script to use PR3799, following inclusion of JDK-8245468 (TLSv1.3)
- Resolves: rhbz#1876665

[1:1.8.0.272.b05-0.2.ea]
- Enable JFR on x86, now we have JDK-8252096: Shenandoah: adjust SerialPageShiftCount for x86_32 and JFR
- Resolves: rhbz#1876665

[1:1.8.0.272.b05-0.1.ea]
- Update to aarch64-shenandoah-jdk8u272-b05-shenandoah-merge-2020-08-28.
- Add additional s390 log2_intptr case in shenandoahUtils.cpp introduced by JDK-8245464
- Resolves: rhbz#1876665

[1:1.8.0.272.b05-0.0.ea]
- Update to aarch64-shenandoah-jdk8u272-b05.
- Fix context in JDK-8186464/RH1433262 patch, following JDK-8078334 @randomness tag addition.
- Add additional s390 size_t case in g1ConcurrentMarkObjArrayProcessor.cpp introduced by JDK-8057003
- Resolves: rhbz#1876665

[1:1.8.0.272.b04-0.0.ea]
- Update to aarch64-shenandoah-jdk8u272-b04.
- Update tarball generation script to use PR3795, following inclusion of JDK-8177334
- Resolves: rhbz#1876665

[1:1.8.0.272.b03-0.0.ea]
- Update to aarch64-shenandoah-jdk8u272-b03.
- Resolves: rhbz#1876665

[1:1.8.0.272.b02-0.0.ea]
- Update to aarch64-shenandoah-jdk8u272-b02.
- Remove JDK-8154313 backport now applied upstream.
- Change target from 'zip-docs' to 'docs-zip', which is the naming used upstream.
- Resolves: rhbz#1876665

[1:1.8.0.272.b01-0.1.ea]
- Update to aarch64-shenandoah-jdk8u272-b01.
- Switch to EA mode.
- Add debugging output for build.
- JFR must now be explicitly disabled when unwanted (e.g. x86), following switch of upstream default.
- Remove ZipConstants change from JDK-8186464 backport, now provided upstream by JDK-8075774
- Resolves: rhbz#1876665


Related CVEs


CVE-2020-14779
CVE-2020-14781
CVE-2020-14796
CVE-2020-14797
CVE-2020-14803
CVE-2020-14782
CVE-2020-14792

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (aarch64) java-1.8.0-openjdk-1.8.0.272.b10-1.el7_9.src.rpm1892494ab01adf6c43a9a76d02f3fe6fELSA-2021-1298
java-1.8.0-openjdk-1.8.0.272.b10-1.el7_9.aarch64.rpm8f52793abed0edd0ca02462eb359bbc5ELSA-2021-1298
java-1.8.0-openjdk-accessibility-1.8.0.272.b10-1.el7_9.aarch64.rpm0146fc3c5f516f580541845a5424b969ELSA-2021-1298
java-1.8.0-openjdk-demo-1.8.0.272.b10-1.el7_9.aarch64.rpmb4d5b4b8621f4a4bf6a4ddb3c4fc0a52ELSA-2021-1298
java-1.8.0-openjdk-devel-1.8.0.272.b10-1.el7_9.aarch64.rpmee67106cb403faea7ffbb6c8838e3b91ELSA-2021-1298
java-1.8.0-openjdk-headless-1.8.0.272.b10-1.el7_9.aarch64.rpmae8b4f3656fac0ffc363a7e4fb6840bfELSA-2021-1298
java-1.8.0-openjdk-javadoc-1.8.0.272.b10-1.el7_9.noarch.rpm4e32719bf1d40e99fbbb730fe9f42c74ELSA-2021-1298
java-1.8.0-openjdk-javadoc-zip-1.8.0.272.b10-1.el7_9.noarch.rpm0270d88988a18071f92a13b53655470aELSA-2021-1298
java-1.8.0-openjdk-src-1.8.0.272.b10-1.el7_9.aarch64.rpmec235e37975ff0610565f93ebb2af9ddELSA-2021-1298
Oracle Linux 7 (x86_64) java-1.8.0-openjdk-1.8.0.272.b10-1.el7_9.src.rpm1892494ab01adf6c43a9a76d02f3fe6fELSA-2021-1298
java-1.8.0-openjdk-1.8.0.272.b10-1.el7_9.i686.rpmc915e086a5ebee54a6fa16da35ccdea4ELSA-2021-1298
java-1.8.0-openjdk-1.8.0.272.b10-1.el7_9.x86_64.rpmd9974160b54034a8dd86923f35d507fcELSA-2021-1298
java-1.8.0-openjdk-accessibility-1.8.0.272.b10-1.el7_9.i686.rpm28c59b1594f35842d134c7a2df5b1288ELSA-2021-1298
java-1.8.0-openjdk-accessibility-1.8.0.272.b10-1.el7_9.x86_64.rpmeb99877a4af3d3ef9f29204600ab8156ELSA-2021-1298
java-1.8.0-openjdk-demo-1.8.0.272.b10-1.el7_9.i686.rpm848aa397569168aebcd5ecb74b395d77ELSA-2021-1298
java-1.8.0-openjdk-demo-1.8.0.272.b10-1.el7_9.x86_64.rpm424799e5b7c53d0a0d9f6c13a1085d78ELSA-2021-1298
java-1.8.0-openjdk-devel-1.8.0.272.b10-1.el7_9.i686.rpm299df0fe7013c623a14da459d8526920ELSA-2021-1298
java-1.8.0-openjdk-devel-1.8.0.272.b10-1.el7_9.x86_64.rpmc5bf7811d9f49979b345c4a855c9516dELSA-2021-1298
java-1.8.0-openjdk-headless-1.8.0.272.b10-1.el7_9.i686.rpmf31eafef1179a4443abd56104d5e6a50ELSA-2021-1298
java-1.8.0-openjdk-headless-1.8.0.272.b10-1.el7_9.x86_64.rpm5f0888e81ee769c9003ddac86794d431ELSA-2021-1298
java-1.8.0-openjdk-javadoc-1.8.0.272.b10-1.el7_9.noarch.rpm4e32719bf1d40e99fbbb730fe9f42c74ELSA-2021-1298
java-1.8.0-openjdk-javadoc-zip-1.8.0.272.b10-1.el7_9.noarch.rpm0270d88988a18071f92a13b53655470aELSA-2021-1298
java-1.8.0-openjdk-src-1.8.0.272.b10-1.el7_9.i686.rpm97fc0535dc039c29f6e7d41c10b1a5f6ELSA-2021-1298
java-1.8.0-openjdk-src-1.8.0.272.b10-1.el7_9.x86_64.rpm26d241473260c51daeea14d94998d342ELSA-2021-1298



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete