Oracle Linux Security Advisory ELSA-2021-3892

https://linux.oracle.com/errata/ELSA-2021-3892.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

aarch64:
java-11-openjdk-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm
java-11-openjdk-devel-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm
java-11-openjdk-headless-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm
java-11-openjdk-demo-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm
java-11-openjdk-javadoc-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm
java-11-openjdk-javadoc-zip-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm
java-11-openjdk-jmods-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm
java-11-openjdk-src-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm


SRPMS:
https://oss.oracle.com:443/ol7/SRPMS-updates/java-11-openjdk-11.0.13.0.8-1.0.1.el7_9.src.rpm

Related CVEs:

CVE-2021-35550
CVE-2021-35556
CVE-2021-35559
CVE-2021-35561
CVE-2021-35564
CVE-2021-35565
CVE-2021-35567
CVE-2021-35578
CVE-2021-35586
CVE-2021-35603




Description of changes:

[1:11.0.13.0.8-1.0.1]
- link atomic for ix86 build

[1:11.0.13.0.8-1]
- Revert addition of libharfbuzz.so after its removal by JDK-8255790
- Resolves: rhbz#2012332

[1:11.0.13.0.8-1]
- Update to jdk-11.0.12.0+8
- Update release notes to 11.0.12.0+8
- Switch to GA mode for final release.
- This tarball is embargoed until 2021-10-19 @ 1pm PT.
- Resolves: rhbz#2012332

[1:11.0.13.0.7-0.1.ea]
- Update to jdk-11.0.13.0+7
- Update release notes to 11.0.13.0+7
- Resolves: rhbz#1999936

[1:11.0.13.0.1-0.1.ea]
- Update to jdk-11.0.13.0+1
- Update release notes to 11.0.13.0+1
- Update tarball generation script to use git following OpenJDK 11u's move to github
- Switch to EA mode for 11.0.13 pre-release builds.
- Remove non-Free test from source tarball.
- Related: rhbz#1999936

[1:11.0.12.0.7-4]
- Reduce disk footprint by removing build artifacts by default.
- Related: rhbz#1999936

[1:11.0.12.0.7-3]
- Restructure the build so a minimal initial build is then used for the final build (with docs)
- This reduces pressure on the system JDK and ensures the JDK being built can do a full build
- Related: rhbz#1999936

[1:11.0.12.0.7-2]
- Don't package lib/client and lib/client/classes.jsa which don't exist.
- Resolves: rhbz#1698873

[1:11.0.12.0.7-1]
- Minor cosmetic improvements to make spec more comparable between variants
- Related: rhbz#1999936


_______________________________________________
El-errata mailing list
El-errata@oss.oracle.com
https://oss.oracle.com/mailman/listinfo/el-errata

Oracle7: ELSA-2021-3892: java Important Security Update

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

Summary

[1:11.0.13.0.8-1.0.1] - link atomic for ix86 build [1:11.0.13.0.8-1] - Revert addition of libharfbuzz.so after its removal by JDK-8255790 - Resolves: rhbz#2012332 [1:11.0.13.0.8-1] - Update to jdk-11.0.12.0+8 - Update release notes to 11.0.12.0+8 - Switch to GA mode for final release. - This tarball is embargoed until 2021-10-19 @ 1pm PT. - Resolves: rhbz#2012332 [1:11.0.13.0.7-0.1.ea] - Update to jdk-11.0.13.0+7 - Update release notes to 11.0.13.0+7 - Resolves: rhbz#1999936 [1:11.0.13.0.1-0.1.ea] - Update to jdk-11.0.13.0+1 - Update release notes to 11.0.13.0+1 - Update tarball generation script to use git following OpenJDK 11u's move to github - Switch to EA mode for 11.0.13 pre-release builds. - Remove non-Free test from source tarball. - Related: rhbz#1999936 [1:11.0.12.0.7-4] - Reduce disk footprint by removing build artifacts by default. - Related: rhbz#1999936 [1:11.0.12.0.7-3] - Restructure the build so a minimal initial build is then used for the final build (with docs) - This reduces pressure on the system JDK and ensures the JDK being built can do a full build - Related: rhbz#1999936 [1:11.0.12.0.7-2] - Don't package lib/client and lib/client/classes.jsa which don't exist. - Resolves: rhbz#1698873 [1:11.0.12.0.7-1] - Minor cosmetic improvements to make spec more comparable between variants - Related: rhbz#1999936

SRPMs

https://oss.oracle.com:443/ol7/SRPMS-updates/java-11-openjdk-11.0.13.0.8-1.0.1.el7_9.src.rpm

x86_64

aarch64

java-11-openjdk-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm java-11-openjdk-devel-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm java-11-openjdk-headless-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm java-11-openjdk-demo-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm java-11-openjdk-javadoc-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm java-11-openjdk-javadoc-zip-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm java-11-openjdk-jmods-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm java-11-openjdk-src-11.0.13.0.8-1.0.1.el7_9.aarch64.rpm

i386

Severity
Related CVEs: CVE-2021-35550 CVE-2021-35556 CVE-2021-35559 CVE-2021-35561 CVE-2021-35564 CVE-2021-35565 CVE-2021-35567 CVE-2021-35578 CVE-2021-35586 CVE-2021-35603

Related News