ELSA-2023-0208

ELSA-2023-0208 - java-1.8.0-openjdk security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2023-01-27

Description


[1:1.8.0.362.b09-2]
- Update cacerts patch to fix OPENJDK-1433 SecurityManager issue
- Update to shenandoah-jdk8u352-b09 (GA)
- Update release notes for shenandoah-8u352-b09.
- Resolves: rhbz#2163595

[1:1.8.0.362.b08-2]
- Update to shenandoah-jdk8u352-b08 (GA)
- Update release notes for shenandoah-8u352-b08.
- Fix broken links and missing release notes in older releases.
- Drop RH1163501 patch which is not upstream or in 11, 17 & 19 packages and seems obsolete
- Patch was broken by inclusion of 'JDK-8293554: Enhanced DH Key Exchanges'
- Patch was added for a specific corner case of a 4096-bit DH key on a Fedora host that no longer exists
- Fedora now appears to be using RSA and the JDK now supports ECC in preference to large DH keys
- Resolves: rhbz#2160111

[1:1.8.0.362.b07-0.2.ea]
- Update to shenandoah-jdk8u362-b07 (EA)
- Update release notes for shenandoah-8u362-b07.
- Switch to EA mode for 8u362 pre-release builds.
- Drop JDK-8195607/PR3776/RH1760437 now this is upstream
- Require tzdata 2022g due to inclusion of JDK-8296108, JDK-8296715 & JDK-8297804
- Drop tzdata patches for 2022d & 2022e (JDK-8294357 & JDK-8295173) which are now upstream
- Update TestTranslations.java to test the new America/Ciudad_Juarez zone
- Drop JDK-8255559/RH2124390 patch which is now upstream
- Resolves: rhbz#2159910

[1:1.8.0.352.b08-3]
- Add backport of JDK-8255559 to fix file descriptor leak in XML code
- Resolves: rhbz#2139705


Related CVEs


CVE-2023-21830
CVE-2023-21843

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) java-1.8.0-openjdk-1.8.0.362.b09-2.el8_7.src.rpm5a61c8b357a7bc4469451127aab8cb4a-
java-1.8.0-openjdk-1.8.0.362.b09-2.el8_7.aarch64.rpm373dc532d06b54f2420fa99ed9cbfedb-
java-1.8.0-openjdk-accessibility-1.8.0.362.b09-2.el8_7.aarch64.rpm8713377ed3c65523de8393d1a7fed069-
java-1.8.0-openjdk-accessibility-fastdebug-1.8.0.362.b09-2.el8_7.aarch64.rpm807a083ce8898e07646cb1884ea21740-
java-1.8.0-openjdk-accessibility-slowdebug-1.8.0.362.b09-2.el8_7.aarch64.rpm1e756b25b9896e316d34651a40c5226b-
java-1.8.0-openjdk-demo-1.8.0.362.b09-2.el8_7.aarch64.rpmc804d09731eb7bbe1fde776f10ece4b8-
java-1.8.0-openjdk-demo-fastdebug-1.8.0.362.b09-2.el8_7.aarch64.rpm3ff897782e837af064a53e7c21f9f3f8-
java-1.8.0-openjdk-demo-slowdebug-1.8.0.362.b09-2.el8_7.aarch64.rpmf0d45aed1aeb745dfd3e0faba972b1fd-
java-1.8.0-openjdk-devel-1.8.0.362.b09-2.el8_7.aarch64.rpmcadd3de1a326f4a6359b924ba636a970-
java-1.8.0-openjdk-devel-fastdebug-1.8.0.362.b09-2.el8_7.aarch64.rpm0bf707a93a1f2942abfd83e48acd4386-
java-1.8.0-openjdk-devel-slowdebug-1.8.0.362.b09-2.el8_7.aarch64.rpmf425f5354e2ff03751ad6078e9c0afc1-
java-1.8.0-openjdk-fastdebug-1.8.0.362.b09-2.el8_7.aarch64.rpm4a5fd42712f66ced17e385564172c105-
java-1.8.0-openjdk-headless-1.8.0.362.b09-2.el8_7.aarch64.rpm81da2589348b0e441adbf7bd69da3b87-
java-1.8.0-openjdk-headless-fastdebug-1.8.0.362.b09-2.el8_7.aarch64.rpm7718b9c0dead8c132854b19ef576d0d5-
java-1.8.0-openjdk-headless-slowdebug-1.8.0.362.b09-2.el8_7.aarch64.rpme38c39e62d1588b1c5b7c6786f1dfe1b-
java-1.8.0-openjdk-javadoc-1.8.0.362.b09-2.el8_7.noarch.rpm8fea0b7eff886e6d8925f24ee0dddf75-
java-1.8.0-openjdk-javadoc-zip-1.8.0.362.b09-2.el8_7.noarch.rpm0fec7423fdceda96c98f2eb9c3ed7348-
java-1.8.0-openjdk-slowdebug-1.8.0.362.b09-2.el8_7.aarch64.rpm529c6d35c1fd7b57d0e79a32f0a9c8f9-
java-1.8.0-openjdk-src-1.8.0.362.b09-2.el8_7.aarch64.rpm01fa688816b719da05c5f11526b691e3-
java-1.8.0-openjdk-src-fastdebug-1.8.0.362.b09-2.el8_7.aarch64.rpm114160a394640cc77b5cef4429bed8e6-
java-1.8.0-openjdk-src-slowdebug-1.8.0.362.b09-2.el8_7.aarch64.rpm82e66609a31c118f61b9650253031348-
Oracle Linux 8 (x86_64) java-1.8.0-openjdk-1.8.0.362.b09-2.el8_7.src.rpm5a61c8b357a7bc4469451127aab8cb4a-
java-1.8.0-openjdk-1.8.0.362.b09-2.el8_7.x86_64.rpm2908e602536021f9efafa0fe8d77e7fa-
java-1.8.0-openjdk-accessibility-1.8.0.362.b09-2.el8_7.x86_64.rpmd5e139de7090ed17c34cf536f6e70ac7-
java-1.8.0-openjdk-accessibility-fastdebug-1.8.0.362.b09-2.el8_7.x86_64.rpm9873cfaa9f6ee99485c9e9ffacbe44f7-
java-1.8.0-openjdk-accessibility-slowdebug-1.8.0.362.b09-2.el8_7.x86_64.rpme4b098471f2ddebb2bdf3597c18e122e-
java-1.8.0-openjdk-demo-1.8.0.362.b09-2.el8_7.x86_64.rpm3fa767d44cf6dadace3822c2f07cca4e-
java-1.8.0-openjdk-demo-fastdebug-1.8.0.362.b09-2.el8_7.x86_64.rpm364f2567f1bbfed2a8c946bc7287eba1-
java-1.8.0-openjdk-demo-slowdebug-1.8.0.362.b09-2.el8_7.x86_64.rpmbf0612b842aaf6cc44152ed0a6670ab7-
java-1.8.0-openjdk-devel-1.8.0.362.b09-2.el8_7.x86_64.rpm461e2e7072b385295b1602019dfb0c31-
java-1.8.0-openjdk-devel-fastdebug-1.8.0.362.b09-2.el8_7.x86_64.rpmba54570cc52e6f6a10418b476ab4a771-
java-1.8.0-openjdk-devel-slowdebug-1.8.0.362.b09-2.el8_7.x86_64.rpm6d82e44c2f4c50dec4daaf7d7fe18148-
java-1.8.0-openjdk-fastdebug-1.8.0.362.b09-2.el8_7.x86_64.rpm12ff8f620946df79e0ce84c05db2b90f-
java-1.8.0-openjdk-headless-1.8.0.362.b09-2.el8_7.x86_64.rpmc5498d38817cf305e330bddab3ba5df3-
java-1.8.0-openjdk-headless-fastdebug-1.8.0.362.b09-2.el8_7.x86_64.rpm0063c0df935bd92100e64bddd036c0a6-
java-1.8.0-openjdk-headless-slowdebug-1.8.0.362.b09-2.el8_7.x86_64.rpmec2239c894d002dcc0f3cd54babe204f-
java-1.8.0-openjdk-javadoc-1.8.0.362.b09-2.el8_7.noarch.rpm8fea0b7eff886e6d8925f24ee0dddf75-
java-1.8.0-openjdk-javadoc-zip-1.8.0.362.b09-2.el8_7.noarch.rpm0fec7423fdceda96c98f2eb9c3ed7348-
java-1.8.0-openjdk-slowdebug-1.8.0.362.b09-2.el8_7.x86_64.rpm5b89702bc2312475656ae0f2764545a3-
java-1.8.0-openjdk-src-1.8.0.362.b09-2.el8_7.x86_64.rpm17a792e912c0b3b44169c2873fb9ccac-
java-1.8.0-openjdk-src-fastdebug-1.8.0.362.b09-2.el8_7.x86_64.rpm3a96dba681808a4de6faf26fc47ce14b-
java-1.8.0-openjdk-src-slowdebug-1.8.0.362.b09-2.el8_7.x86_64.rpm5dc29f843228c71067e7e212fee629ad-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete