Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

openSUSE Leap 15.0: 2019:2557-1 Critical: Java-11-OpenJDK Security Fix

opensuse
Calendar Grey November 24, 2019
Dist Opensuse Esm H88
openSUSE Security Update: Security update for java-11-openjdk ______________________________________
An update that fixes 18 vulnerabilities is now available.

Description

This update for java-11-openjdk to version jdk-11.0.5-10 fixes the

following issues:

Security issues fixed (October 2019 CPU bsc#1154212):

- CVE-2019-2933: Windows file handling redux

- CVE-2019-2945: Better socket support

- CVE-2019-2949: Better Kerberos ccache handling

- CVE-2019-2958: Build Better Processes

- CVE-2019-2964: Better support for patterns

- CVE-2019-2962: Better Glyph Images

- CVE-2019-2973: Better pattern compilation

- CVE-2019-2975: Unexpected exception in jjs

- CVE-2019-2978: Improved handling of jar files

- CVE-2019-2977: Improve String index handling

- CVE-2019-2981: Better Path supports

- CVE-2019-2983: Better serial attributes

- CVE-2019-2987: Better rendering of native glyphs

- CVE-2019-2988: Better Graphics2D drawing

- CVE-2019-2989: Improve TLS connection support

- CVE-2019-2992: Enhance font glyph mapping

- CVE-2019-2999: Commentary on Javadoc comments

- CVE-2019-2894: Enhance ECDSA...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.0:

zypper in -t patch openSUSE-2019-2557=1

Package List

- openSUSE Leap 15.0 (x86_64):

java-11-openjdk-11.0.5.0-lp150.2.28.1

java-11-openjdk-accessibility-11.0.5.0-lp150.2.28.1

java-11-openjdk-accessibility-debuginfo-11.0.5.0-lp150.2.28.1

java-11-openjdk-debuginfo-11.0.5.0-lp150.2.28.1

java-11-openjdk-debugsource-11.0.5.0-lp150.2.28.1

java-11-openjdk-demo-11.0.5.0-lp150.2.28.1

java-11-openjdk-devel-11.0.5.0-lp150.2.28.1

java-11-openjdk-headless-11.0.5.0-lp150.2.28.1

java-11-openjdk-jmods-11.0.5.0-lp150.2.28.1

java-11-openjdk-src-11.0.5.0-lp150.2.28.1

- openSUSE Leap 15.0 (noarch):

java-11-openjdk-javadoc-11.0.5.0-lp150.2.28.1

References

https://www.suse.com/security/cve/CVE-2019-2894.html

https://www.suse.com/security/cve/CVE-2019-2933.html

https://www.suse.com/security/cve/CVE-2019-2945.html

https://www.suse.com/security/cve/CVE-2019-2949.html

https://www.suse.com/security/cve/CVE-2019-2958.html

https://www.suse.com/security/cve/CVE-2019-2962.html

https://www.suse.com/security/cve/CVE-2019-2964.html

https://www.suse.com/security/cve/CVE-2019-2973.html

https://www.suse.com/security/cve/CVE-2019-2975.html

https://www.suse.com/security/cve/CVE-2019-2977.html

https://www.suse.com/security/cve/CVE-2019-2978.html

https://www.suse.com/security/cve/CVE-2019-2981.html

https://www.suse.com/security/cve/CVE-2019-2983.html

https://www.suse.com/security/cve/CVE-2019-2987.html

https://www.suse.com/security/cve/CVE-2019-2988.html

https://www.suse.com/security/cve/CVE-2019-2989.html

https://www.suse.com/security/cve/CVE-2019-2992.html

https://www.suse.com/security/cve/CVE-2019-2999.html

https://bugzilla.suse.com/1152856

https://bugzilla.suse.com/11542...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2019:2557-1
Rating: important
Affected Products: openSUSE Leap 15.0

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here