|
|
Log in / Subscribe / Register

java: weak key generation

Package(s):java-1.8.0-openjdk CVE #(s):CVE-2016-0475
Created:January 21, 2016 Updated:January 27, 2016
Description: From the Red Hat advisory:

It was discovered that the password-based encryption (PBE) implementation in the Libraries component in OpenJDK used an incorrect key length. This could, in certain cases, lead to generation of keys that were weaker than expected. (CVE-2016-0475)

Alerts:
Gentoo 201610-08 oracle-jdk-bin 2016-10-15
Red Hat RHSA-2016:0098-01 java-1.8.0-ibm 2016-02-02
SUSE SUSE-SU-2016:0256-1 java-1_8_0-openjdk 2016-01-27
Scientific Linux SLSA-2016:0049-1 java-1.8.0-openjdk 2016-01-21
CentOS CESA-2016:0050 java-1.8.0-openjdk 2016-01-21
CentOS CESA-2016:0049 java-1.8.0-openjdk 2016-01-21
Scientific Linux SLSA-2016:0050-1 java-1.8.0-openjdk 2016-01-20
Red Hat RHSA-2016:0055-01 java-1.8.0-oracle 2016-01-21
Red Hat RHSA-2016:0050-01 java-1.8.0-openjdk 2016-01-20
Red Hat RHSA-2016:0049-01 java-1.8.0-openjdk 2016-01-20
SUSE SUSE-SU-2016:0390-1 java-1_8_0-ibm 2016-02-09
Mageia MGASA-2016-0048 java-1.8.0-openjdk/copy-jdk-configs/lua-lunit/lua-posix 2016-02-05

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds