ELSA-2022-1445

ELSA-2022-1445 - java-17-openjdk security and bug fix update

Type:SECURITY
Severity:IMPORTANT
Release Date:2022-04-20

Description


[1:17.0.3.0.6-2]
- Add JDK-8284920 fix for XPath regression
- Related: rhbz#2073575

[1:17.0.3.0.6-2]
- JDK-8275082 should be listed as also resolving JDK-8278008 & CVE-2022-21476
- Related: rhbz#2073575

[1:17.0.3.0.6-1]
- JDK-8283911 patch no longer needed now we're GA...
- Resolves: rhbz#2073575

[1:17.0.3.0.6-1]
- April 2022 security update to jdk 17.0.3+6
- Update to jdk-17.0.3.0+6 pre-release tarball (17usec.17.0.3+5-220408)
- Add JDK-8284548 regression fix missing from pre-release tarball but in jdk-17.0.3+6/jdk-17.0.3-ga
- Update release notes to 17.0.3.0+6
- Add missing README.md and generate_source_tarball.sh
- Introduce tests/tests.yml, based on the one in java-11-openjdk
- Switch to GA mode for release
- ** This tarball is embargoed until 2022-04-19 @ 1pm PT. **
- Resolves: rhbz#2073575

[1:17.0.3.0.5-0.1.ea]
- Update to jdk-17.0.3.0+5
- Update release notes to 17.0.3.0+5
- Switch to EA mode for 17.0.3 pre-release builds.
- Add JDK-8283911 to fix bad DEFAULT_PROMOTED_VERSION_PRE value
- Related: rhbz#2073422

[1:17.0.2.0.8-6]
- Enable AlgorithmParameters and AlgorithmParameterGenerator services in FIPS mode
- Resolves: rhbz#2055396

[1:17.0.2.0.8-5]
- Allow plain key import to be disabled with -Dcom.redhat.fips.plainKeySupport=false
- Resolves: rhbz#2018189

[1:17.0.2.0.8-5]
- Add patch to allow plain key import.
- Resolves: rhbz#2018189


Related CVEs


CVE-2022-21426
CVE-2022-21434
CVE-2022-21476
CVE-2022-21496
CVE-2022-21443
CVE-2022-21449

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) java-17-openjdk-17.0.3.0.6-2.el8_5.src.rpm3cfb34ebe23e34049b292d99dbd4007c-
java-17-openjdk-17.0.3.0.6-2.el8_5.aarch64.rpm2e1e99f9366dfe911877d96b3981db8f-
java-17-openjdk-demo-17.0.3.0.6-2.el8_5.aarch64.rpm8ec9b6e64cf0c67d08f5bb393672a5b5-
java-17-openjdk-demo-fastdebug-17.0.3.0.6-2.el8_5.aarch64.rpm1e6b76168461c51c811e4d8dca50a107-
java-17-openjdk-demo-slowdebug-17.0.3.0.6-2.el8_5.aarch64.rpmebf70814faa51e4547007d2d4fa4fea5-
java-17-openjdk-devel-17.0.3.0.6-2.el8_5.aarch64.rpm1c2dc3c7d8427778fe9b1c898d242fda-
java-17-openjdk-devel-fastdebug-17.0.3.0.6-2.el8_5.aarch64.rpm7541c109deba53240c7ee19d2dc25e1e-
java-17-openjdk-devel-slowdebug-17.0.3.0.6-2.el8_5.aarch64.rpm4c0fd1bd97e5487e18046bda59af718b-
java-17-openjdk-fastdebug-17.0.3.0.6-2.el8_5.aarch64.rpme096b37fb3383485d38565ae41c0151c-
java-17-openjdk-headless-17.0.3.0.6-2.el8_5.aarch64.rpmc9720ebacbb2e6f22e7b52150bc6aa88-
java-17-openjdk-headless-fastdebug-17.0.3.0.6-2.el8_5.aarch64.rpm504fe51251eb2461c99e0079cc9c2218-
java-17-openjdk-headless-slowdebug-17.0.3.0.6-2.el8_5.aarch64.rpm9c3e9294cea1d1c6a95ca2aafbd7904c-
java-17-openjdk-javadoc-17.0.3.0.6-2.el8_5.aarch64.rpm0983bbd4ebaa18dd74444dbc47f023b1-
java-17-openjdk-javadoc-zip-17.0.3.0.6-2.el8_5.aarch64.rpmf60f656163969f6e6628a68682df7797-
java-17-openjdk-jmods-17.0.3.0.6-2.el8_5.aarch64.rpm19e066660185305fe497cdb011b94221-
java-17-openjdk-jmods-fastdebug-17.0.3.0.6-2.el8_5.aarch64.rpm97873871114b92705069556341f3e381-
java-17-openjdk-jmods-slowdebug-17.0.3.0.6-2.el8_5.aarch64.rpm5cbe2ad6bf5fdc1a7ca97d199ab76dc0-
java-17-openjdk-slowdebug-17.0.3.0.6-2.el8_5.aarch64.rpmbce1e5660a6070b8f52dd2d455843844-
java-17-openjdk-src-17.0.3.0.6-2.el8_5.aarch64.rpme7fcfc34b483e422b4361356cbc09d24-
java-17-openjdk-src-fastdebug-17.0.3.0.6-2.el8_5.aarch64.rpm6afb832b16b334e602857ff14bcfb21e-
java-17-openjdk-src-slowdebug-17.0.3.0.6-2.el8_5.aarch64.rpm32cac6167138937138874e567f9610f0-
java-17-openjdk-static-libs-17.0.3.0.6-2.el8_5.aarch64.rpm355c76a01fe1fe11bcf65a98f004d92f-
java-17-openjdk-static-libs-fastdebug-17.0.3.0.6-2.el8_5.aarch64.rpmc254f8b3f56dbf26133fd7ed2d5b91fa-
java-17-openjdk-static-libs-slowdebug-17.0.3.0.6-2.el8_5.aarch64.rpm670e17d3b76eddeb203068926f392169-
Oracle Linux 8 (x86_64) java-17-openjdk-17.0.3.0.6-2.el8_5.src.rpm3cfb34ebe23e34049b292d99dbd4007c-
java-17-openjdk-17.0.3.0.6-2.el8_5.x86_64.rpm99b7b0d555147764c19f4b6ba02160e4-
java-17-openjdk-demo-17.0.3.0.6-2.el8_5.x86_64.rpmbbb51373f3b370af187be8992f29b205-
java-17-openjdk-demo-fastdebug-17.0.3.0.6-2.el8_5.x86_64.rpm318fbcc002bad6a177e82c08a2fb4436-
java-17-openjdk-demo-slowdebug-17.0.3.0.6-2.el8_5.x86_64.rpmd6d0d074566317ddc0f5978d1d40c691-
java-17-openjdk-devel-17.0.3.0.6-2.el8_5.x86_64.rpm294f5c440c2aff45468005da0360f53a-
java-17-openjdk-devel-fastdebug-17.0.3.0.6-2.el8_5.x86_64.rpm890962a3a1b33f88a872a3d6f7ab39c5-
java-17-openjdk-devel-slowdebug-17.0.3.0.6-2.el8_5.x86_64.rpm60a2fbd6bc8676b8ab3c9b4bea211ea7-
java-17-openjdk-fastdebug-17.0.3.0.6-2.el8_5.x86_64.rpm6d8b80a71561f9ce122dbf48d84e21b5-
java-17-openjdk-headless-17.0.3.0.6-2.el8_5.x86_64.rpm16531ae0dbb7ccca8f5b6e272b583564-
java-17-openjdk-headless-fastdebug-17.0.3.0.6-2.el8_5.x86_64.rpmcd21bb78de1759dfffedebf46bdf15e3-
java-17-openjdk-headless-slowdebug-17.0.3.0.6-2.el8_5.x86_64.rpmb365a1a20a290ff47ac3fe878e6738ce-
java-17-openjdk-javadoc-17.0.3.0.6-2.el8_5.x86_64.rpmbaf564420b70c6b82209d1c3721dc2a3-
java-17-openjdk-javadoc-zip-17.0.3.0.6-2.el8_5.x86_64.rpm84d6a7740b1bbf0e5dc46534f31ec3b3-
java-17-openjdk-jmods-17.0.3.0.6-2.el8_5.x86_64.rpmf0af99cdb28dd9017c3a6e7f04be041b-
java-17-openjdk-jmods-fastdebug-17.0.3.0.6-2.el8_5.x86_64.rpmfd13a9137b6581e699de14b2f526998e-
java-17-openjdk-jmods-slowdebug-17.0.3.0.6-2.el8_5.x86_64.rpm6e02fa7bb4026943ef826146ce6db19c-
java-17-openjdk-slowdebug-17.0.3.0.6-2.el8_5.x86_64.rpm9111a44cee61b3c8264c6d4915663c45-
java-17-openjdk-src-17.0.3.0.6-2.el8_5.x86_64.rpmcdf75315ed88c275cec8ae65fa76d792-
java-17-openjdk-src-fastdebug-17.0.3.0.6-2.el8_5.x86_64.rpm69fb1f86a504016d2736239da954690d-
java-17-openjdk-src-slowdebug-17.0.3.0.6-2.el8_5.x86_64.rpm6b80111a91de312e0803504584316cd8-
java-17-openjdk-static-libs-17.0.3.0.6-2.el8_5.x86_64.rpm059af2874cd96ee6b6e9f49b24795727-
java-17-openjdk-static-libs-fastdebug-17.0.3.0.6-2.el8_5.x86_64.rpme0181540ec38fa7ee65a70bab2f9cf00-
java-17-openjdk-static-libs-slowdebug-17.0.3.0.6-2.el8_5.x86_64.rpmc70256af277e9b95efd159b591a333ef-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete