Oracle Linux Security Advisory ELSA-2024-4573

http://linux.oracle.com/errata/ELSA-2024-4573.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
java-21-openjdk-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-demo-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-devel-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-headless-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-javadoc-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-javadoc-zip-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-jmods-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-src-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-static-libs-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-demo-fastdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-demo-slowdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-devel-fastdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-devel-slowdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-fastdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-headless-fastdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-headless-slowdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-jmods-fastdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-jmods-slowdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-slowdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-src-fastdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-src-slowdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-static-libs-fastdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm
java-21-openjdk-static-libs-slowdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm

aarch64:
java-21-openjdk-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-demo-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-devel-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-headless-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-javadoc-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-javadoc-zip-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-jmods-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-src-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-static-libs-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-demo-fastdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-demo-slowdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-devel-fastdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-devel-slowdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-fastdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-headless-fastdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-headless-slowdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-jmods-fastdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-jmods-slowdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-slowdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-src-fastdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-src-slowdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-static-libs-fastdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm
java-21-openjdk-static-libs-slowdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates//java-21-openjdk-21.0.4.0.7-1.0.1.el8.src.rpm

Related CVEs:

CVE-2024-21131
CVE-2024-21138
CVE-2024-21140
CVE-2024-21145
CVE-2024-21147




Description of changes:

[1:21.0.4.0.7-1.0.1]
- Add Oracle vendor bug URL [Orabug: 34340155]

[1:21.0.4.0.7-1]
- Update to jdk-21.0.4+7 (GA)
- Update release notes to 21.0.4+7
- Switch to GA mode.
- Sync the copy of the portable specfile with the latest update
- Add missing section headers in NEWS
- ** This tarball is embargoed until 2024-07-16 @ 1pm PT. **
- Resolves: RHEL-47009

[1:21.0.4.0.5-0.1.ea]
- Update to jdk-21.0.4+5 (EA)
- Update release notes to 21.0.4+5
- Limit Java only tests to one architecture using jdk_test_arch
- Actually require tzdata 2024a now it is available in the buildroot
- Resolves: RHEL-45358
- Resolves: RHEL-47398

[1:21.0.4.0.1-0.1.ea]
- Update to jdk-21.0.4+1 (EA)
- Update release notes to 21.0.4+1
- Switch to EA mode
- Bump LCMS 2 version to 2.16.0 following JDK-8321489
- Add zlib build requirement or bundled version (1.3.1), depending on system_libs setting
- Restore NEWS file so portable can be rebuilt
- Sync the copy of the portable specfile with the latest update
- Related: RHEL-45358
- Resolves: RHEL-46027


_______________________________________________
El-errata mailing list
El-errata@oss.oracle.com
https://oss.oracle.com/mailman/listinfo/el-errata

Oracle8: ELSA-2024-4573: java-21-openjdk Important Security Advisory Updates

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Summary

[1:21.0.4.0.7-1.0.1] - Add Oracle vendor bug URL [Orabug: 34340155] [1:21.0.4.0.7-1] - Update to jdk-21.0.4+7 (GA) - Update release notes to 21.0.4+7 - Switch to GA mode. - Sync the copy of the portable specfile with the latest update - Add missing section headers in NEWS - ** This tarball is embargoed until 2024-07-16 @ 1pm PT. ** - Resolves: RHEL-47009 [1:21.0.4.0.5-0.1.ea] - Update to jdk-21.0.4+5 (EA) - Update release notes to 21.0.4+5 - Limit Java only tests to one architecture using jdk_test_arch - Actually require tzdata 2024a now it is available in the buildroot - Resolves: RHEL-45358 - Resolves: RHEL-47398 [1:21.0.4.0.1-0.1.ea] - Update to jdk-21.0.4+1 (EA) - Update release notes to 21.0.4+1 - Switch to EA mode - Bump LCMS 2 version to 2.16.0 following JDK-8321489 - Add zlib build requirement or bundled version (1.3.1), depending on system_libs setting - Restore NEWS file so portable can be rebuilt - Sync the copy of the portable specfile with the latest update - Related: RHEL-45358 - Resolves: RHEL-46027

SRPMs

http://oss.oracle.com/ol8/SRPMS-updates//java-21-openjdk-21.0.4.0.7-1.0.1.el8.src.rpm

x86_64

java-21-openjdk-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-demo-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-devel-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-headless-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-javadoc-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-javadoc-zip-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-jmods-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-src-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-static-libs-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-demo-fastdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-demo-slowdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-devel-fastdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-devel-slowdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-fastdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-headless-fastdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-headless-slowdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-jmods-fastdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-jmods-slowdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-slowdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-src-fastdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-src-slowdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-static-libs-fastdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm java-21-openjdk-static-libs-slowdebug-21.0.4.0.7-1.0.1.el8.x86_64.rpm

aarch64

java-21-openjdk-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-demo-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-devel-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-headless-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-javadoc-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-javadoc-zip-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-jmods-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-src-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-static-libs-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-demo-fastdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-demo-slowdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-devel-fastdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-devel-slowdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-fastdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-headless-fastdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-headless-slowdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-jmods-fastdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-jmods-slowdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-slowdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-src-fastdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-src-slowdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-static-libs-fastdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm java-21-openjdk-static-libs-slowdebug-21.0.4.0.7-1.0.1.el8.aarch64.rpm

i386

Severity
Related CVEs: CVE-2024-21131 CVE-2024-21138 CVE-2024-21140 CVE-2024-21145 CVE-2024-21147

Related News