Oracle alert ELSA-2022-5709 (java-1.8.0-openjdk)
From: | Errata Announcements for Oracle Linux via El-errata <el-errata@oss.oracle.com> | |
To: | el-errata@oss.oracle.com | |
Subject: | [El-errata] ELSA-2022-5709 Important: Oracle Linux 9 java-1.8.0-openjdk security, bug fix, and enhancement update | |
Date: | Tue, 26 Jul 2022 12:48:16 -0700 | |
Message-ID: | <mailman.24.1658864905.6478.el-errata@oss.oracle.com> |
Oracle Linux Security Advisory ELSA-2022-5709 http://linux.oracle.com/errata/ELSA-2022-5709.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: java-1.8.0-openjdk-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm java-1.8.0-openjdk-demo-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm java-1.8.0-openjdk-devel-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm java-1.8.0-openjdk-headless-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm java-1.8.0-openjdk-javadoc-1.8.0.342.b07-1.0.1.el9_0.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.342.b07-1.0.1.el9_0.noarch.rpm java-1.8.0-openjdk-src-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm java-1.8.0-openjdk-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.342.b07-1.0.1.el9_0.x86_64.rpm aarch64: java-1.8.0-openjdk-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm java-1.8.0-openjdk-demo-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm java-1.8.0-openjdk-devel-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm java-1.8.0-openjdk-headless-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm java-1.8.0-openjdk-javadoc-1.8.0.342.b07-1.0.1.el9_0.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.342.b07-1.0.1.el9_0.noarch.rpm java-1.8.0-openjdk-src-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm java-1.8.0-openjdk-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.342.b07-1.0.1.el9_0.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates/java-1.8.0-openjd... Related CVEs: CVE-2022-21540 CVE-2022-21541 CVE-2022-34169 Description of changes: [1.8.0.342.b07-1.0.1] - Replace upstream references [Orabug: 34340145] [1:1.8.0.342.b07-1] - Update to shenandoah-jdk8u342-b07 - Update release notes for shenandoah-8u342-b07. - Print release file during build, which should now include a correct SOURCE value from .src-rev - Update tarball script with IcedTea GitHub URL and .src-rev generation - Use "git apply" with patches in the tarball script to allow binary diffs - Remove redundant "REPOS" variable from tarball script - Include script to generate bug list for release notes - Update tzdata requirement to 2022a to match JDK-8283350 - Rebase FIPS patches from fips branch and simplify by using a single patch from that repository - * RH2036462: sun.security.pkcs11.wrapper.PKCS11.getInstance breakage - * RH2090378: Revert to disabling system security properties and FIPS mode support together - Rebase RH1648249 nss.cfg patch so it applies after the FIPS patch - Perform configuration changes (e.g. nss.cfg, nss.fips.cfg, tzdb.dat) in installjdk - Enable system security properties in the RPM (now disabled by default in the FIPS repo) - Improve security properties test to check both enabled and disabled behaviour - Run security properties test with property debugging on - Explicitly require crypto-policies during build and runtime for system security properties - Resolves: rhbz#2099916 - Resolves: rhbz#2107958 - Resolves: rhbz#2084776 - Resolves: rhbz#2106508 [1:1.8.0.332.b09-2] - RH2007331: SecretKey generate/import operations don't add the CKA_SIGN attribute in FIPS mode - Resolves: rhbz#2107956 _______________________________________________ El-errata mailing list El-errata@oss.oracle.com https://oss.oracle.com/mailman/listinfo/el-errata