ELSA-2022-5683

ELSA-2022-5683 - java-11-openjdk security, bug fix, and enhancement update

Type:SECURITY
Severity:IMPORTANT
Release Date:2022-07-21

Description


[1:11.0.16.0.8-1]
- Update to jdk-11.0.16+8
- Update release notes to 11.0.16+8
- Use same tarball naming style as java-17-openjdk and java-latest-openjdk
- Drop JDK-8257794 patch now upstreamed
- Print release file during build, which should now include a correct SOURCE value from .src-rev
- Update tarball script with IcedTea GitHub URL and .src-rev generation
- Use 'git apply' with patches in the tarball script to allow binary diffs
- Include script to generate bug list for release notes
- Update tzdata requirement to 2022a to match JDK-8283350
- Make use of the vendor version string to store our version & release rather than an upstream release date
- Explicitly require crypto-policies during build and runtime for system security properties
- Rebase FIPS patches from fips branch and simplify by using a single patch from that repository
- * RH2036462: sun.security.pkcs11.wrapper.PKCS11.getInstance breakage
- * RH2090378: Revert to disabling system security properties and FIPS mode support together
- Rebase RH1648249 nss.cfg patch so it applies after the FIPS patch
- Enable system security properties in the RPM (now disabled by default in the FIPS repo)
- Improve security properties test to check both enabled and disabled behaviour
- Run security properties test with property debugging on
- Resolves: rhbz#2106514
- Resolves: rhbz#2099917
- Resolves: rhbz#2108248
- Resolves: rhbz#2084649

[1:11.0.16.0.8-1]
- Add additional patch during tarball generation to align tests with ECC changes
- Related: rhbz#2084649

[1:11.0.16.0.8-1]
- RH2007331: SecretKey generate/import operations don't add the CKA_SIGN attribute in FIPS mode
- Resolves: rhbz#2108251


Related CVEs


CVE-2022-21540
CVE-2022-21541
CVE-2022-34169

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) java-11-openjdk-11.0.16.0.8-1.el8_6.src.rpm899a4d0595a88ccbb76603179be8d30d-
java-11-openjdk-11.0.16.0.8-1.el8_6.aarch64.rpm9f0eda1d56bd725ca571335808713008-
java-11-openjdk-demo-11.0.16.0.8-1.el8_6.aarch64.rpm6b24dce3846da71bb29ff3c82f1996f6-
java-11-openjdk-demo-fastdebug-11.0.16.0.8-1.el8_6.aarch64.rpm9521c17d9b4fe674b0bc59851701db65-
java-11-openjdk-demo-slowdebug-11.0.16.0.8-1.el8_6.aarch64.rpma91041809a122f77847b087beb103109-
java-11-openjdk-devel-11.0.16.0.8-1.el8_6.aarch64.rpm800d962ee6e011dfb36c1ac59d97eabf-
java-11-openjdk-devel-fastdebug-11.0.16.0.8-1.el8_6.aarch64.rpm7677ddb9a4665dfd7820230c59812d53-
java-11-openjdk-devel-slowdebug-11.0.16.0.8-1.el8_6.aarch64.rpm148ffad4386a6faa1f1047489465f8b1-
java-11-openjdk-fastdebug-11.0.16.0.8-1.el8_6.aarch64.rpm821028dfd237ac7f498c41acd6790c9a-
java-11-openjdk-headless-11.0.16.0.8-1.el8_6.aarch64.rpma029c6974ccbd226ea7ece72d525c753-
java-11-openjdk-headless-fastdebug-11.0.16.0.8-1.el8_6.aarch64.rpmb1f94b09e62584535cd42e45ff47167b-
java-11-openjdk-headless-slowdebug-11.0.16.0.8-1.el8_6.aarch64.rpmdc98bec701b7dccfece34f7ee8d7791e-
java-11-openjdk-javadoc-11.0.16.0.8-1.el8_6.aarch64.rpm9e90b6abe011ac7c24b0c90db2201cf8-
java-11-openjdk-javadoc-zip-11.0.16.0.8-1.el8_6.aarch64.rpm93feeb89ae219b7e49d3ca961db1fdd5-
java-11-openjdk-jmods-11.0.16.0.8-1.el8_6.aarch64.rpm90624bad648eed9a2d57a35d634e2a64-
java-11-openjdk-jmods-fastdebug-11.0.16.0.8-1.el8_6.aarch64.rpm6f2a2b70cb3afde3ca9953bf17fa9179-
java-11-openjdk-jmods-slowdebug-11.0.16.0.8-1.el8_6.aarch64.rpm8e5f779b3a5798f9f3d5c1d7ae8e6e68-
java-11-openjdk-slowdebug-11.0.16.0.8-1.el8_6.aarch64.rpm91633c26884dd5935010b3e833b6e49b-
java-11-openjdk-src-11.0.16.0.8-1.el8_6.aarch64.rpm303eaab99579a8a4db61e5df6a1de165-
java-11-openjdk-src-fastdebug-11.0.16.0.8-1.el8_6.aarch64.rpm21d40d6320ea14e5e599c32e31c0a142-
java-11-openjdk-src-slowdebug-11.0.16.0.8-1.el8_6.aarch64.rpm1e30a530a94654123e679c9dec94fee3-
java-11-openjdk-static-libs-11.0.16.0.8-1.el8_6.aarch64.rpm093f8cff1b44ec7dad62b41c7b0d2c37-
java-11-openjdk-static-libs-fastdebug-11.0.16.0.8-1.el8_6.aarch64.rpm080bc5fbfe861de3d2b570fe0afe7517-
java-11-openjdk-static-libs-slowdebug-11.0.16.0.8-1.el8_6.aarch64.rpmad0ecd8ce1e3bb5f48539555110e1e14-
Oracle Linux 8 (x86_64) java-11-openjdk-11.0.16.0.8-1.el8_6.src.rpm899a4d0595a88ccbb76603179be8d30d-
java-11-openjdk-11.0.16.0.8-1.el8_6.x86_64.rpm181e7f76aaf87e85e7b43d17d354364a-
java-11-openjdk-demo-11.0.16.0.8-1.el8_6.x86_64.rpmb9500535587389c98d19434da55340db-
java-11-openjdk-demo-fastdebug-11.0.16.0.8-1.el8_6.x86_64.rpmd5b3b34679860fc4e99bf59bb27a2c05-
java-11-openjdk-demo-slowdebug-11.0.16.0.8-1.el8_6.x86_64.rpmff0c4aca9ef78897e2ae21739d78fc9c-
java-11-openjdk-devel-11.0.16.0.8-1.el8_6.x86_64.rpm89c31c4fc58e81a7c1215e2cce7c33cc-
java-11-openjdk-devel-fastdebug-11.0.16.0.8-1.el8_6.x86_64.rpm1ed4d95049a293425c45b02ddb5890fb-
java-11-openjdk-devel-slowdebug-11.0.16.0.8-1.el8_6.x86_64.rpmb38ef1d208577df02c2c09dfe3a213ea-
java-11-openjdk-fastdebug-11.0.16.0.8-1.el8_6.x86_64.rpm413fbd004fbfb7e82f5bbcc57c8edac4-
java-11-openjdk-headless-11.0.16.0.8-1.el8_6.x86_64.rpm2711862484d6505401d647582de0f4f2-
java-11-openjdk-headless-fastdebug-11.0.16.0.8-1.el8_6.x86_64.rpmbdfc12ca85a2a481f5ccb7e8cde0c972-
java-11-openjdk-headless-slowdebug-11.0.16.0.8-1.el8_6.x86_64.rpmf93ddd91d89e6179735712fb12a585c5-
java-11-openjdk-javadoc-11.0.16.0.8-1.el8_6.x86_64.rpm4cdf3a3804ccc4e59fd2e7d043b6f9ae-
java-11-openjdk-javadoc-zip-11.0.16.0.8-1.el8_6.x86_64.rpm022401a0d649d0455d58e207eb0de938-
java-11-openjdk-jmods-11.0.16.0.8-1.el8_6.x86_64.rpm4f6a2f14bec7c74cb4ee1a1890536d58-
java-11-openjdk-jmods-fastdebug-11.0.16.0.8-1.el8_6.x86_64.rpm1d9b6178b34703d82dec23ca9b5ef84b-
java-11-openjdk-jmods-slowdebug-11.0.16.0.8-1.el8_6.x86_64.rpm361c4839f107c20c83509fec610bd2b9-
java-11-openjdk-slowdebug-11.0.16.0.8-1.el8_6.x86_64.rpm9e9fb9a97eef542b0cccfdb11ab9f944-
java-11-openjdk-src-11.0.16.0.8-1.el8_6.x86_64.rpm6e52bcb0afdc095acffd56cc076ed78f-
java-11-openjdk-src-fastdebug-11.0.16.0.8-1.el8_6.x86_64.rpm07b051e0f3dd3b0ff3a51818145c44c6-
java-11-openjdk-src-slowdebug-11.0.16.0.8-1.el8_6.x86_64.rpmabed88ec6f045e1d877c112082bcaa0a-
java-11-openjdk-static-libs-11.0.16.0.8-1.el8_6.x86_64.rpmed32349282faef90776454dac0d9fdc3-
java-11-openjdk-static-libs-fastdebug-11.0.16.0.8-1.el8_6.x86_64.rpm6f6d9941f2d915c518917dc5328a5e03-
java-11-openjdk-static-libs-slowdebug-11.0.16.0.8-1.el8_6.x86_64.rpma6045d86a356906b6fb884ce8165debf-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete