Alerts This Week
Warning Icon 1 684
Alerts This Week
Warning Icon 1 684

openSUSE: java-17-openj9 Critical Security Patch 2025:0427-2

opensuse
Calendar Grey September 15, 2025
Dist Opensuse Esm H88
Patch release addressing critical flaws in java-11-openj9 for openSUSE. Prompt measures advised.
An update that solves 8 vulnerabilities and has two fixes is now available

Description

This update for java-11-openj9 fixes the following issues:

Update to OpenJDK 11.0.28 with OpenJ9 0.53.0 virtual machine

Including Oracle July 2025 CPU changes

* CVE-2025-30749 (boo#1246595), CVE-2025-30754 (boo#1246598),

CVE-2025-30761 (boo#1246580), CVE-2025-50059 (boo#1246575),

CVE-2025-50106 (boo#1246584)

* OpenJ9 changes, see https://eclipse.dev/openj9/docs/version0.53/

Update to OpenJDK 11.0.27 with OpenJ9 0.51.0 virtual machine

Including Oracle April 2025 CPU changes

* CVE-2025-21587 (boo#1241274), CVE-2025-30691 (boo#1241275),

CVE-2025-30698 (boo#1241276)

* OpenJ9 changes, see https://eclipse.dev/openj9/docs/version0.51/

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Backports SLE-15-SP6:

zypper in -t patch openSUSE-2025-351=1

Package List

- openSUSE Backports SLE-15-SP6 (aarch64 ppc64le s390x x86_64):

java-11-openj9-11.0.28.0-bp156.4.6.1

java-11-openj9-demo-11.0.28.0-bp156.4.6.1

java-11-openj9-devel-11.0.28.0-bp156.4.6.1

java-11-openj9-headless-11.0.28.0-bp156.4.6.1

java-11-openj9-jmods-11.0.28.0-bp156.4.6.1

java-11-openj9-src-11.0.28.0-bp156.4.6.1

- openSUSE Backports SLE-15-SP6 (noarch):

java-11-openj9-javadoc-11.0.28.0-bp156.4.6.1

References

https://www.suse.com/security/cve/CVE-2025-21587.html

https://www.suse.com/security/cve/CVE-2025-30691.html

https://www.suse.com/security/cve/CVE-2025-30698.html

https://www.suse.com/security/cve/CVE-2025-30749.html

https://www.suse.com/security/cve/CVE-2025-30754.html

https://www.suse.com/security/cve/CVE-2025-30761.html

https://www.suse.com/security/cve/CVE-2025-50059.html

https://www.suse.com/security/cve/CVE-2025-50106.html

https://bugzilla.suse.com/1235844

https://bugzilla.suse.com/1241274

https://bugzilla.suse.com/1241275

https://bugzilla.suse.com/1241276

https://bugzilla.suse.com/1246575

https://bugzilla.suse.com/1246580

https://bugzilla.suse.com/1246584

https://bugzilla.suse.com/1246595

https://bugzilla.suse.com/1246598

https://bugzilla.suse.com/1246806

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2025:0351-1
Rating: important
Affected Products: openSUSE Backports SLE-15-SP6 ble.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here