ELSA-2022-5709

ELSA-2022-5709 - java-1.8.0-openjdk security, bug fix, and enhancement update

Type:SECURITY
Severity:IMPORTANT
Release Date:2022-07-26

Description


[1.8.0.342.b07-1.0.1]
- Replace upstream references [Orabug: 34340145]

[1:1.8.0.342.b07-1]
- Update to shenandoah-jdk8u342-b07
- Update release notes for shenandoah-8u342-b07.
- Print release file during build, which should now include a correct SOURCE value from .src-rev
- Update tarball script with IcedTea GitHub URL and .src-rev generation
- Use 'git apply' with patches in the tarball script to allow binary diffs
- Remove redundant 'REPOS' variable from tarball script
- Include script to generate bug list for release notes
- Update tzdata requirement to 2022a to match JDK-8283350
- Rebase FIPS patches from fips branch and simplify by using a single patch from that repository
- * RH2036462: sun.security.pkcs11.wrapper.PKCS11.getInstance breakage
- * RH2090378: Revert to disabling system security properties and FIPS mode support together
- Rebase RH1648249 nss.cfg patch so it applies after the FIPS patch
- Perform configuration changes (e.g. nss.cfg, nss.fips.cfg, tzdb.dat) in installjdk
- Enable system security properties in the RPM (now disabled by default in the FIPS repo)
- Improve security properties test to check both enabled and disabled behaviour
- Run security properties test with property debugging on
- Explicitly require crypto-policies during build and runtime for system security properties
- Resolves: rhbz#2099916
- Resolves: rhbz#2107958
- Resolves: rhbz#2084776
- Resolves: rhbz#2106508

[1:1.8.0.332.b09-2]
- RH2007331: SecretKey generate/import operations don't add the CKA_SIGN attribute in FIPS mode
- Resolves: rhbz#2107956


Related CVEs


CVE-2022-21540
CVE-2022-21541
CVE-2022-34169

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 9 (aarch64) java-1.8.0-openjdk-1.8.0.342.b07-1.0.1.el9_0.src.rpm3b38b9b95cd81e57002abe4879524ab1-
java-1.8.0-openjdk-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpmd6f5cbbd83801222ae4444335e769805-
java-1.8.0-openjdk-demo-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm488cad354297d00847e09d57c5e9a3a1-
java-1.8.0-openjdk-demo-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm922ef1c5b76e915fbb85bd11db4ca439-
java-1.8.0-openjdk-demo-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm357ebdc1068e90232212658f62005b95-
java-1.8.0-openjdk-devel-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpmef13f46521d2e18b3df9bb92908312f6-
java-1.8.0-openjdk-devel-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpmbc5278b36cf6503783acf3d4bffa3bc4-
java-1.8.0-openjdk-devel-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm344c3ba0395232872abbbaa5c14f41c5-
java-1.8.0-openjdk-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm25247267be1b0cd95156fd64bcf591a3-
java-1.8.0-openjdk-headless-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm0987bff88e4fc8e57a99310497b8e4ec-
java-1.8.0-openjdk-headless-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpma48112b5ff7125d5c1e228e4caa5c332-
java-1.8.0-openjdk-headless-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm8f34146c6c72bb1606750770a8e3b317-
java-1.8.0-openjdk-javadoc-1.8.0.342.b07-1.0.1.el9_0.noarch.rpm7b3793638d5dc44c3c7b045f1123ef1a-
java-1.8.0-openjdk-javadoc-zip-1.8.0.342.b07-1.0.1.el9_0.noarch.rpm9a5df81a5f4e493408f372e47f41c8f9-
java-1.8.0-openjdk-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm9b302ddf78826d7f3831e6fed96be79d-
java-1.8.0-openjdk-src-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm4ce097a8c7eba991ba7509d4640979ae-
java-1.8.0-openjdk-src-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpme16363d47af5309cbcc1b4aa4ba11e40-
java-1.8.0-openjdk-src-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm87ef903f52170a24f86a228599e0de2d-
Oracle Linux 9 (x86_64) java-1.8.0-openjdk-1.8.0.342.b07-1.0.1.el9_0.src.rpm3b38b9b95cd81e57002abe4879524ab1-
java-1.8.0-openjdk-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpmc42ddc67ad4be9d8e30e8516fac622d5-
java-1.8.0-openjdk-demo-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpmce531cdf7d4ca5cc31446737fb33803a-
java-1.8.0-openjdk-demo-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm2dacda6eb927b38a66bab3bc1701b160-
java-1.8.0-openjdk-demo-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm25c637081fbacd40c813797e039fc35d-
java-1.8.0-openjdk-devel-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpmab2490d7653ad2a12ed5ca4141d3d50f-
java-1.8.0-openjdk-devel-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpmbf232b02429063e3d96a28ef408adbbf-
java-1.8.0-openjdk-devel-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm548f40c007545164ec56586b1dbc40f0-
java-1.8.0-openjdk-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm5be5a131601b7a4439cf43e6bf4c1b01-
java-1.8.0-openjdk-headless-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpmd6f2612ef64d5575d4dcacdb37a5c5f9-
java-1.8.0-openjdk-headless-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpmf72b29da779f8079d5c2d77ac6bf57bc-
java-1.8.0-openjdk-headless-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpmae863d10b66f13e45ee1a0ae96f5397a-
java-1.8.0-openjdk-javadoc-1.8.0.342.b07-1.0.1.el9_0.noarch.rpm7b3793638d5dc44c3c7b045f1123ef1a-
java-1.8.0-openjdk-javadoc-zip-1.8.0.342.b07-1.0.1.el9_0.noarch.rpm9a5df81a5f4e493408f372e47f41c8f9-
java-1.8.0-openjdk-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm7fb09ac77e68b6ab782f02cfde744481-
java-1.8.0-openjdk-src-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpmd7ca3ab46a5d15502e07dd1d0be0d073-
java-1.8.0-openjdk-src-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm23739d1029fdd877c9d78f8417dea4e9-
java-1.8.0-openjdk-src-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm3198298a2d48f02267eee0973047efcd-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete