This update for java-21-openjdk fixes the following issues:
Update to upstream tag jdk-21.0.7+6 (April 2025 CPU)
CVEs fixed:
* CVE-2025-21587: Fixed JSSE unauthorized access, deletion or modification of
critical data (bsc#1241274)
* CVE-2025-30691: Fixed Oracle Java SE Compiler Unauthorized Data Access
(bsc#1241275)
* CVE-2025-30698: Fixed Oracle Java 2D unauthorized data access and DoS
(bsc#1241276)
Changes:
+ JDK-8198237: [macos] Test java/awt/Frame/
/ExceptionOnSetExtendedStateTest/
/ExceptionOnSetExtendedStateTest.java fails
+ JDK-8211851: (ch) java/nio/channels/AsynchronousSocketChannel/
/StressLoopback.java times out (aix)
+ JDK-8226933: [TEST_BUG]GTK L&F: There is no swatches or RGB
tab in JColorChooser
+ JDK-8226938: [TEST_BUG]GTK L&F: There is no Details button in
FileChooser Dialog
+ JDK-8227529: With malformed --app-image the error messages
are awful
+ JDK-8277240:...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.6
zypper in -t patch openSUSE-SLE-15.6-2025-1429=1 SUSE-2025-1429=1
* Basesystem Module 15-SP6
zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP6-2025-1429=1
* openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586)
* java-21-openjdk-debugsource-21.0.7.0-150600.3.12.1
* java-21-openjdk-headless-debuginfo-21.0.7.0-150600.3.12.1
* java-21-openjdk-demo-21.0.7.0-150600.3.12.1
* java-21-openjdk-21.0.7.0-150600.3.12.1
* java-21-openjdk-headless-21.0.7.0-150600.3.12.1
* java-21-openjdk-src-21.0.7.0-150600.3.12.1
* java-21-openjdk-devel-21.0.7.0-150600.3.12.1
* java-21-openjdk-jmods-21.0.7.0-150600.3.12.1
* java-21-openjdk-debuginfo-21.0.7.0-150600.3.12.1
* java-21-openjdk-devel-debuginfo-21.0.7.0-150600.3.12.1
* openSUSE Leap 15.6 (noarch)
* java-21-openjdk-javadoc-21.0.7.0-150600.3.12.1
* Basesystem Module 15-SP6 (aarch64 ppc64le s390x x86_64)
* java-21-openjdk-debugsource-21.0.7.0-150600.3.12.1
* java-21-openjdk-headless-debuginfo-21.0.7.0-150600.3.12.1
* java-21-openjdk-demo-21.0.7.0-150600.3.12.1
* java-21-openjdk-21.0.7.0-150600.3.12.1
* java-21-openjdk-headless-21.0.7.0-150600.3.12.1
* java-21-openjdk-devel-21.0.7.0-150600.3.12.1
*...
Read the Full Advisory* bsc#1241274
* bsc#1241275
* bsc#1241276
## References:
* https://www.suse.com/security/cve/CVE-2025-21587.html
* https://www.suse.com/security/cve/CVE-2025-30691.html
* https://www.suse.com/security/cve/CVE-2025-30698.html
* https://bugzilla.suse.com/show_bug.cgi?id=1241274
* https://bugzilla.suse.com/show_bug.cgi?id=1241275
* https://bugzilla.suse.com/show_bug.cgi?id=1241276
Get the latest Linux and open source security news straight to your inbox.