ELSA-2022-5709

ELSA-2022-5709 - java-1.8.0-openjdk security, bug fix, and enhancement update

Type:SECURITY
Impact:IMPORTANT
Release Date:2022-07-26

Description


[1.8.0.342.b07-1.0.1]
- Replace upstream references [Orabug: 34340145]

[1:1.8.0.342.b07-1]
- Update to shenandoah-jdk8u342-b07
- Update release notes for shenandoah-8u342-b07.
- Print release file during build, which should now include a correct SOURCE value from .src-rev
- Update tarball script with IcedTea GitHub URL and .src-rev generation
- Use 'git apply' with patches in the tarball script to allow binary diffs
- Remove redundant 'REPOS' variable from tarball script
- Include script to generate bug list for release notes
- Update tzdata requirement to 2022a to match JDK-8283350
- Rebase FIPS patches from fips branch and simplify by using a single patch from that repository
- * RH2036462: sun.security.pkcs11.wrapper.PKCS11.getInstance breakage
- * RH2090378: Revert to disabling system security properties and FIPS mode support together
- Rebase RH1648249 nss.cfg patch so it applies after the FIPS patch
- Perform configuration changes (e.g. nss.cfg, nss.fips.cfg, tzdb.dat) in installjdk
- Enable system security properties in the RPM (now disabled by default in the FIPS repo)
- Improve security properties test to check both enabled and disabled behaviour
- Run security properties test with property debugging on
- Explicitly require crypto-policies during build and runtime for system security properties
- Resolves: rhbz#2099916
- Resolves: rhbz#2107958
- Resolves: rhbz#2084776
- Resolves: rhbz#2106508

[1:1.8.0.332.b09-2]
- RH2007331: SecretKey generate/import operations don't add the CKA_SIGN attribute in FIPS mode
- Resolves: rhbz#2107956


Related CVEs


CVE-2022-21541
CVE-2022-21540
CVE-2022-34169

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) java-1.8.0-openjdk-1.8.0.342.b07-1.0.1.el9_0.src.rpm5f3898f0d0df3c54cb6428929c1039b1078c28d093d88796a61e4f5df625fe9e-ol9_aarch64_appstream
java-1.8.0-openjdk-1.8.0.342.b07-1.0.1.el9_0.src.rpm5f3898f0d0df3c54cb6428929c1039b1078c28d093d88796a61e4f5df625fe9e-ol9_aarch64_codeready_builder
java-1.8.0-openjdk-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm56d9789e10af34de546d837208438fda60a91f07a069bd7ad0a2b3414a216fd6-ol9_aarch64_appstream
java-1.8.0-openjdk-demo-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm962987ca3826fc8a3936246621ee1541a53ac3868ec9b7c0ef00eb156ba494c2-ol9_aarch64_appstream
java-1.8.0-openjdk-demo-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm40760d849dae6eebdc5859a76937d4ac998cb5d86b694c6650df4b9d0ee63ac7-ol9_aarch64_codeready_builder
java-1.8.0-openjdk-demo-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm81bf4fc965ae0e301783d023beb14166918652ef7217eedb99c8a73646b66a06-ol9_aarch64_codeready_builder
java-1.8.0-openjdk-devel-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm5a2ec6db7d0a6d7c83d9d58d6973f636a715d09fb760a21e6ded1a59b45a0509-ol9_aarch64_appstream
java-1.8.0-openjdk-devel-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm7cf3a196b4c27eda6d3c3f181fc879cc003cef6a8c28b53395493f396cb4f202-ol9_aarch64_codeready_builder
java-1.8.0-openjdk-devel-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm4284e01099828ad9a41eb4c7e94a06f3c1cc2748829f2b00b1c86a1651b6e93f-ol9_aarch64_codeready_builder
java-1.8.0-openjdk-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm8faae25ba902b60baeed19d044e37f63e0c16a0d6b5ebe20f1cecb8c7e6888fa-ol9_aarch64_codeready_builder
java-1.8.0-openjdk-headless-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm9659eb9240c77a774e79ef21e6574a3deb44c922e14c1f472934a8b582f8079c-ol9_aarch64_appstream
java-1.8.0-openjdk-headless-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpmdb99023df6fda20768716046999b9fe802f3385a98e76c02815a6b90f9559447-ol9_aarch64_codeready_builder
java-1.8.0-openjdk-headless-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpmae447b155dfc0261927bfdf080ae3c5ac022bcb042f7261e36afbb574f110f73-ol9_aarch64_codeready_builder
java-1.8.0-openjdk-javadoc-1.8.0.342.b07-1.0.1.el9_0.noarch.rpm2879a6d2da46ea260071f57c146c6d15c6f387c120056cba0bdc50cf83b99275-ol9_aarch64_appstream
java-1.8.0-openjdk-javadoc-zip-1.8.0.342.b07-1.0.1.el9_0.noarch.rpm429315d8da9373078faeda3f0b31e388e8b7375ba6faaffdede9e96e1b2a10e9-ol9_aarch64_appstream
java-1.8.0-openjdk-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm52046bc7f04e4d03d7529a7fa77fa9fb71f30c53c7e7d9f0c10b59e1a4947bfa-ol9_aarch64_codeready_builder
java-1.8.0-openjdk-src-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm7131629c1cf6de9142ccbbf06b22ce204b817c595c33d11b968af5976612a0e4-ol9_aarch64_appstream
java-1.8.0-openjdk-src-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpmc94c5676028ea87ef1efac317f51507c56a8c184e1e0d88c16626b4854ca625d-ol9_aarch64_codeready_builder
java-1.8.0-openjdk-src-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm96439e36a86e683edcf194387cb5e59506d5a5cf252454c9c7dbd4f645a43535-ol9_aarch64_codeready_builder
Oracle Linux 9 (x86_64) java-1.8.0-openjdk-1.8.0.342.b07-1.0.1.el9_0.src.rpm5f3898f0d0df3c54cb6428929c1039b1078c28d093d88796a61e4f5df625fe9e-ol9_x86_64_appstream
java-1.8.0-openjdk-1.8.0.342.b07-1.0.1.el9_0.src.rpm5f3898f0d0df3c54cb6428929c1039b1078c28d093d88796a61e4f5df625fe9e-ol9_x86_64_codeready_builder
java-1.8.0-openjdk-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm7e372c4c41179d534b53af8c52c198bf652427d63e5f8357dc24725a52def47b-ol9_x86_64_appstream
java-1.8.0-openjdk-demo-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm895898e825a046ce28ba95c68e7d0b600e9350f291579409be424a39d3b22e5b-ol9_x86_64_appstream
java-1.8.0-openjdk-demo-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm887c1fdb91b1083d4e3ded379759405bb673704c61ee513d0ed1d97dac68c856-ol9_x86_64_codeready_builder
java-1.8.0-openjdk-demo-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpmcf24b58c01f34365ee800a619db45dc6eba59d7d93d9c95c4d541650fbf1af0e-ol9_x86_64_codeready_builder
java-1.8.0-openjdk-devel-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpmcc85aaeaa408fe06a723ae6d9af3ebaa192f921379334437b97da187f697cb36-ol9_x86_64_appstream
java-1.8.0-openjdk-devel-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpmd387cd009e142386a1d595cd33986deded0099988bd9ee4b0f518f620260a9e8-ol9_x86_64_codeready_builder
java-1.8.0-openjdk-devel-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm62fb6da49edbe6027cae5b64074320722ef498a31be3a72e743d07154e57fcac-ol9_x86_64_codeready_builder
java-1.8.0-openjdk-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm70c8e0595ce174923f244b248fe1511863053b20fd92d2bec664fcd7d89b943a-ol9_x86_64_codeready_builder
java-1.8.0-openjdk-headless-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm60fb7993f058ccc2cf12c30d44b733b205bc15dfa7ad576f4fa4159eb058f9bb-ol9_x86_64_appstream
java-1.8.0-openjdk-headless-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm310eb4595a84673b64e64c654061151b85e973f0b76bd0d0343c0b671d85a665-ol9_x86_64_codeready_builder
java-1.8.0-openjdk-headless-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpmdb34fe49802620dc81a6ce52743113bac29913c6bbb6ba2f887e14bb1dc7ebd5-ol9_x86_64_codeready_builder
java-1.8.0-openjdk-javadoc-1.8.0.342.b07-1.0.1.el9_0.noarch.rpm2879a6d2da46ea260071f57c146c6d15c6f387c120056cba0bdc50cf83b99275-ol9_x86_64_appstream
java-1.8.0-openjdk-javadoc-zip-1.8.0.342.b07-1.0.1.el9_0.noarch.rpm429315d8da9373078faeda3f0b31e388e8b7375ba6faaffdede9e96e1b2a10e9-ol9_x86_64_appstream
java-1.8.0-openjdk-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpme74704e08fa73b597fcf9da69f2b6b96a248bc67de80cba1225139a17cb1cc44-ol9_x86_64_codeready_builder
java-1.8.0-openjdk-src-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpmdef7e26d0b9097e908b4c4dc5c7e513053a097dcfb8748bc506a9489c3df277a-ol9_x86_64_appstream
java-1.8.0-openjdk-src-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm718e57bc1a79f129e591b4e0dafc4776ff40f9888361ca7331a7c3bb3d75d96e-ol9_x86_64_codeready_builder
java-1.8.0-openjdk-src-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm529b7f3c0c69ff5532c3f13ca420a1dd7c6ef83d8c3bc334995ce7e7debece3f-ol9_x86_64_codeready_builder



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete