ELSA-2022-5695

ELSA-2022-5695 - java-11-openjdk security, bug fix, and enhancement update

Type:SECURITY
Severity:IMPORTANT
Release Date:2022-07-26

Description


[1:11.0.16.0.8-1.0.1]
- Replace upstream references [Orabug: 34340155]

[1:11.0.16.0.8-1]
- Update to jdk-11.0.16+8
- Update release notes to 11.0.16+8
- Use same tarball naming style as java-17-openjdk and java-latest-openjdk
- Drop JDK-8257794 patch now upstreamed
- Print release file during build, which should now include a correct SOURCE value from .src-rev
- Update tarball script with IcedTea GitHub URL and .src-rev generation
- Use 'git apply' with patches in the tarball script to allow binary diffs
- Include script to generate bug list for release notes
- Update tzdata requirement to 2022a to match JDK-8283350
- Make use of the vendor version string to store our version & release rather than an upstream release date
- Explicitly require crypto-policies during build and runtime for system security properties
- Rebase FIPS patches from fips branch and simplify by using a single patch from that repository
- * RH2036462: sun.security.pkcs11.wrapper.PKCS11.getInstance breakage
- * RH2090378: Revert to disabling system security properties and FIPS mode support together
- Rebase RH1648249 nss.cfg patch so it applies after the FIPS patch
- Enable system security properties in the RPM (now disabled by default in the FIPS repo)
- Improve security properties test to check both enabled and disabled behaviour
- Run security properties test with property debugging on
- Resolves: rhbz#2106516
- Resolves: rhbz#2099915
- Resolves: rhbz#2107868

[1:11.0.16.0.8-1]
- Add additional patch during tarball generation to align tests with ECC changes
- Related: rhbz#2106516

[1:11.0.16.0.8-1]
- RH2007331: SecretKey generate/import operations don't add the CKA_SIGN attribute in FIPS mode
- Resolves: rhbz#2107866


Related CVEs


CVE-2022-21540
CVE-2022-21541
CVE-2022-34169

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 9 (aarch64) java-11-openjdk-11.0.16.0.8-1.0.1.el9_0.src.rpmac210cdc6abb9f223e6aed257b0dd8e8-
java-11-openjdk-11.0.16.0.8-1.0.1.el9_0.aarch64.rpm94b5407ae1cc7bfe9d8ed13e039c9dda-
java-11-openjdk-demo-11.0.16.0.8-1.0.1.el9_0.aarch64.rpmcc37eebd494465dd9b19d6fd09818b42-
java-11-openjdk-demo-fastdebug-11.0.16.0.8-1.0.1.el9_0.aarch64.rpmd8f8600dfea212efbae813751d20070b-
java-11-openjdk-demo-slowdebug-11.0.16.0.8-1.0.1.el9_0.aarch64.rpm6ad280b3a5e12fa75d1f8066aaa5549d-
java-11-openjdk-devel-11.0.16.0.8-1.0.1.el9_0.aarch64.rpm4abc715f7d7f10429d44ca1940dacdf1-
java-11-openjdk-devel-fastdebug-11.0.16.0.8-1.0.1.el9_0.aarch64.rpme8ad41e6d277074ba8f57ce21f1c2d91-
java-11-openjdk-devel-slowdebug-11.0.16.0.8-1.0.1.el9_0.aarch64.rpm190d65a99fdb7d540549388887353125-
java-11-openjdk-fastdebug-11.0.16.0.8-1.0.1.el9_0.aarch64.rpm40c5177fd490bd82742a715229f4a952-
java-11-openjdk-headless-11.0.16.0.8-1.0.1.el9_0.aarch64.rpm0c6d2d7da53c01104abf1d6ebff9ff61-
java-11-openjdk-headless-fastdebug-11.0.16.0.8-1.0.1.el9_0.aarch64.rpmae3876d7b73115d04678f19aadad26ae-
java-11-openjdk-headless-slowdebug-11.0.16.0.8-1.0.1.el9_0.aarch64.rpm00178f64b016dcc6983c65a690fa1796-
java-11-openjdk-javadoc-11.0.16.0.8-1.0.1.el9_0.aarch64.rpm00c80795de744fad2a8a9c980622de24-
java-11-openjdk-javadoc-zip-11.0.16.0.8-1.0.1.el9_0.aarch64.rpmf0226bd3775df3331b1502aa9107eccb-
java-11-openjdk-jmods-11.0.16.0.8-1.0.1.el9_0.aarch64.rpm731ef255ff88790cb8b586d806edb8dd-
java-11-openjdk-jmods-fastdebug-11.0.16.0.8-1.0.1.el9_0.aarch64.rpmedad19791e10e3adda343e237a01d7f6-
java-11-openjdk-jmods-slowdebug-11.0.16.0.8-1.0.1.el9_0.aarch64.rpmcfb838ca5ccb0b1fc6d3d761b846154b-
java-11-openjdk-slowdebug-11.0.16.0.8-1.0.1.el9_0.aarch64.rpm3be677ac37d4fa47fa04d9114a0a6b0f-
java-11-openjdk-src-11.0.16.0.8-1.0.1.el9_0.aarch64.rpm7b1201560269dec9dc4861cbead1fe4c-
java-11-openjdk-src-fastdebug-11.0.16.0.8-1.0.1.el9_0.aarch64.rpm4d59f50ea221c06af26d174abe234c49-
java-11-openjdk-src-slowdebug-11.0.16.0.8-1.0.1.el9_0.aarch64.rpmfb8f169b0c85df8bdde998d6b50d7bdb-
java-11-openjdk-static-libs-11.0.16.0.8-1.0.1.el9_0.aarch64.rpmdd8ab63078a7b008f4db50ebaed3df09-
java-11-openjdk-static-libs-fastdebug-11.0.16.0.8-1.0.1.el9_0.aarch64.rpm22c27d19eb1b708b874756354c708afa-
java-11-openjdk-static-libs-slowdebug-11.0.16.0.8-1.0.1.el9_0.aarch64.rpmc4921f9795810cd502cec23130b0f614-
Oracle Linux 9 (x86_64) java-11-openjdk-11.0.16.0.8-1.0.1.el9_0.src.rpmac210cdc6abb9f223e6aed257b0dd8e8-
java-11-openjdk-11.0.16.0.8-1.0.1.el9_0.x86_64.rpmdf50e02e23a21fbf277359b7301a7c24-
java-11-openjdk-demo-11.0.16.0.8-1.0.1.el9_0.x86_64.rpmca3aa9004e5f5150cc375cf72876ec39-
java-11-openjdk-demo-fastdebug-11.0.16.0.8-1.0.1.el9_0.x86_64.rpm45a17d07c92472104e9a7a52cfc5cf3a-
java-11-openjdk-demo-slowdebug-11.0.16.0.8-1.0.1.el9_0.x86_64.rpmb2522edae6646e903582c1f22211367e-
java-11-openjdk-devel-11.0.16.0.8-1.0.1.el9_0.x86_64.rpm3f37cf78f4e33cca1eead79d63178a11-
java-11-openjdk-devel-fastdebug-11.0.16.0.8-1.0.1.el9_0.x86_64.rpmc0855460d8fb47df3c22cbadb1158625-
java-11-openjdk-devel-slowdebug-11.0.16.0.8-1.0.1.el9_0.x86_64.rpm20be5f2a0b8339236a9650f31bc11184-
java-11-openjdk-fastdebug-11.0.16.0.8-1.0.1.el9_0.x86_64.rpm9d58a27c86e3025920e76fa9525a769f-
java-11-openjdk-headless-11.0.16.0.8-1.0.1.el9_0.x86_64.rpm2c0f43e488a72362d53375de51256a12-
java-11-openjdk-headless-fastdebug-11.0.16.0.8-1.0.1.el9_0.x86_64.rpm04bcdd469a905cd1bb74a70b256725c4-
java-11-openjdk-headless-slowdebug-11.0.16.0.8-1.0.1.el9_0.x86_64.rpmff9940ee091e1cfbeff55812a979c5d4-
java-11-openjdk-javadoc-11.0.16.0.8-1.0.1.el9_0.x86_64.rpm82b0c5844d4085f7b0e4baee2b50563d-
java-11-openjdk-javadoc-zip-11.0.16.0.8-1.0.1.el9_0.x86_64.rpmb95a0d4e08daa0c32955d5cef3c7b81a-
java-11-openjdk-jmods-11.0.16.0.8-1.0.1.el9_0.x86_64.rpm603e1f8584b196e48fffdd739b5ba803-
java-11-openjdk-jmods-fastdebug-11.0.16.0.8-1.0.1.el9_0.x86_64.rpme0df58c6294c417b0bd68d824e2de017-
java-11-openjdk-jmods-slowdebug-11.0.16.0.8-1.0.1.el9_0.x86_64.rpm7b54f58a4e1f8e9243b9dd72d77dea07-
java-11-openjdk-slowdebug-11.0.16.0.8-1.0.1.el9_0.x86_64.rpmb0cad445c4a681d48e190e0fbfa89808-
java-11-openjdk-src-11.0.16.0.8-1.0.1.el9_0.x86_64.rpm87d6cc05b522bd2b37b1365bb80985c5-
java-11-openjdk-src-fastdebug-11.0.16.0.8-1.0.1.el9_0.x86_64.rpm67e8d216fde32ca2974bdbc533a7274b-
java-11-openjdk-src-slowdebug-11.0.16.0.8-1.0.1.el9_0.x86_64.rpm33604bfd8495160b3670e059d19eb69a-
java-11-openjdk-static-libs-11.0.16.0.8-1.0.1.el9_0.x86_64.rpm3119374b6ea3cf1950aed114dacdcab7-
java-11-openjdk-static-libs-fastdebug-11.0.16.0.8-1.0.1.el9_0.x86_64.rpmeed3e2f9152e1a75baa34dffbb033447-
java-11-openjdk-static-libs-slowdebug-11.0.16.0.8-1.0.1.el9_0.x86_64.rpm0c14e643985e1938022de2bea87359dc-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete