|
|
Log in / Subscribe / Register

Oracle alert ELSA-2022-5683 (java-11-openjdk)

From:  Errata Announcements for Oracle Linux via El-errata <el-errata@oss.oracle.com>
To:  el-errata@oss.oracle.com
Subject:  [El-errata] ELSA-2022-5683 Important: Oracle Linux 8 java-11-openjdk security, bug fix, and enhancement update
Date:  Thu, 21 Jul 2022 19:01:26 -0700
Message-ID:  <mailman.8.1658455294.14598.el-errata@oss.oracle.com>

Oracle Linux Security Advisory ELSA-2022-5683 http://linux.oracle.com/errata/ELSA-2022-5683.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: x86_64: java-11-openjdk-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-demo-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-devel-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-headless-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-javadoc-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-javadoc-zip-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-jmods-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-src-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-static-libs-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-demo-fastdebug-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-demo-slowdebug-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-devel-fastdebug-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-devel-slowdebug-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-fastdebug-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-headless-fastdebug-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-headless-slowdebug-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-jmods-fastdebug-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-jmods-slowdebug-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-slowdebug-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-src-fastdebug-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-src-slowdebug-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-static-libs-fastdebug-11.0.16.0.8-1.el8_6.x86_64.rpm java-11-openjdk-static-libs-slowdebug-11.0.16.0.8-1.el8_6.x86_64.rpm aarch64: java-11-openjdk-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-demo-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-devel-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-headless-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-javadoc-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-javadoc-zip-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-jmods-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-src-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-static-libs-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-demo-fastdebug-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-demo-slowdebug-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-devel-fastdebug-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-devel-slowdebug-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-fastdebug-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-headless-fastdebug-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-headless-slowdebug-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-jmods-fastdebug-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-jmods-slowdebug-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-slowdebug-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-src-fastdebug-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-src-slowdebug-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-static-libs-fastdebug-11.0.16.0.8-1.el8_6.aarch64.rpm java-11-openjdk-static-libs-slowdebug-11.0.16.0.8-1.el8_6.aarch64.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates/java-11-openjdk-1... Related CVEs: CVE-2022-21540 CVE-2022-21541 CVE-2022-34169 Description of changes: [1:11.0.16.0.8-1] - Update to jdk-11.0.16+8 - Update release notes to 11.0.16+8 - Use same tarball naming style as java-17-openjdk and java-latest-openjdk - Drop JDK-8257794 patch now upstreamed - Print release file during build, which should now include a correct SOURCE value from .src-rev - Update tarball script with IcedTea GitHub URL and .src-rev generation - Use "git apply" with patches in the tarball script to allow binary diffs - Include script to generate bug list for release notes - Update tzdata requirement to 2022a to match JDK-8283350 - Make use of the vendor version string to store our version & release rather than an upstream release date - Explicitly require crypto-policies during build and runtime for system security properties - Rebase FIPS patches from fips branch and simplify by using a single patch from that repository - * RH2036462: sun.security.pkcs11.wrapper.PKCS11.getInstance breakage - * RH2090378: Revert to disabling system security properties and FIPS mode support together - Rebase RH1648249 nss.cfg patch so it applies after the FIPS patch - Enable system security properties in the RPM (now disabled by default in the FIPS repo) - Improve security properties test to check both enabled and disabled behaviour - Run security properties test with property debugging on - Resolves: rhbz#2106514 - Resolves: rhbz#2099917 - Resolves: rhbz#2108248 - Resolves: rhbz#2084649 [1:11.0.16.0.8-1] - Add additional patch during tarball generation to align tests with ECC changes - Related: rhbz#2084649 [1:11.0.16.0.8-1] - RH2007331: SecretKey generate/import operations don't add the CKA_SIGN attribute in FIPS mode - Resolves: rhbz#2108251 _______________________________________________ El-errata mailing list El-errata@oss.oracle.com https://oss.oracle.com/mailman/listinfo/el-errata


to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds