Oracle Linux Security Advisory ELSA-2024-4563

http://linux.oracle.com/errata/ELSA-2024-4563.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
java-1.8.0-openjdk-1.8.0.422.b05-2.0.1.el9.x86_64.rpm
java-1.8.0-openjdk-demo-1.8.0.422.b05-2.0.1.el9.x86_64.rpm
java-1.8.0-openjdk-devel-1.8.0.422.b05-2.0.1.el9.x86_64.rpm
java-1.8.0-openjdk-headless-1.8.0.422.b05-2.0.1.el9.x86_64.rpm
java-1.8.0-openjdk-javadoc-1.8.0.422.b05-2.0.1.el9.noarch.rpm
java-1.8.0-openjdk-javadoc-zip-1.8.0.422.b05-2.0.1.el9.noarch.rpm
java-1.8.0-openjdk-src-1.8.0.422.b05-2.0.1.el9.x86_64.rpm
java-1.8.0-openjdk-demo-fastdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm
java-1.8.0-openjdk-demo-slowdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm
java-1.8.0-openjdk-devel-fastdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm
java-1.8.0-openjdk-devel-slowdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm
java-1.8.0-openjdk-fastdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm
java-1.8.0-openjdk-headless-fastdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm
java-1.8.0-openjdk-headless-slowdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm
java-1.8.0-openjdk-slowdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm
java-1.8.0-openjdk-src-fastdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm
java-1.8.0-openjdk-src-slowdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm

aarch64:
java-1.8.0-openjdk-1.8.0.422.b05-2.0.1.el9.aarch64.rpm
java-1.8.0-openjdk-demo-1.8.0.422.b05-2.0.1.el9.aarch64.rpm
java-1.8.0-openjdk-devel-1.8.0.422.b05-2.0.1.el9.aarch64.rpm
java-1.8.0-openjdk-headless-1.8.0.422.b05-2.0.1.el9.aarch64.rpm
java-1.8.0-openjdk-javadoc-1.8.0.422.b05-2.0.1.el9.noarch.rpm
java-1.8.0-openjdk-javadoc-zip-1.8.0.422.b05-2.0.1.el9.noarch.rpm
java-1.8.0-openjdk-src-1.8.0.422.b05-2.0.1.el9.aarch64.rpm
java-1.8.0-openjdk-demo-fastdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm
java-1.8.0-openjdk-demo-slowdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm
java-1.8.0-openjdk-devel-fastdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm
java-1.8.0-openjdk-devel-slowdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm
java-1.8.0-openjdk-fastdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm
java-1.8.0-openjdk-headless-fastdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm
java-1.8.0-openjdk-headless-slowdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm
java-1.8.0-openjdk-slowdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm
java-1.8.0-openjdk-src-fastdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm
java-1.8.0-openjdk-src-slowdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//java-1.8.0-openjdk-1.8.0.422.b05-2.0.1.el9.src.rpm

Related CVEs:

CVE-2024-21131
CVE-2024-21138
CVE-2024-21140
CVE-2024-21144
CVE-2024-21145
CVE-2024-21147




Description of changes:

[1.8.0.422.b05-2.0.1]
- Add Oracle vendor bug URL [Orabug: 34340155]

[1:1.8.0.422.b05-1.1]
- Update to shenandoah-jdk8u422-b05 (GA)
- Update release notes for shenandoah-8u422-b05.
- Rebase PR2462 patch following patched hunk being removed by JDK-8322106
- Switch to GA mode.
- Sync the copy of the portable specfile with the latest update
- Actually require tzdata 2024a now it is available in the buildroot
- Add missing build dependencies on zlib-devel and tar
- Update LCMS version to match JDK-8245400
- ** This tarball is embargoed until 2024-07-16 @ 1pm PT. **
- Resolves: RHEL-46860
- Resolves: RHEL-47011

[1:1.8.0.422.b01-0.1.ea]
- Update to shenandoah-jdk8u422-b01 (EA)
- Update release notes for shenandoah-8u422-b01.
- Switch to EA mode.
- Sync the copy of the portable specfile with the latest update
- Update NEWS file and rename remove-intree-libraries.sh so portable can be rebuilt
- Document policy repacking script and rename to correct spelling and style
- Limit Java only tests to one architecture using jdk_test_arch
- Temporarily include Zero-based architectures in jdk_test_arch until they are portable
- Related: RHEL-46860
- Resolves: RHEL-47069
- Resolves: RHEL-47090


_______________________________________________
El-errata mailing list
El-errata@oss.oracle.com
https://oss.oracle.com/mailman/listinfo/el-errata

Oracle9: ELSA-2024-4563: java-1.8.0-openjdk Important Security Advisory Updates

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

Summary

[1.8.0.422.b05-2.0.1] - Add Oracle vendor bug URL [Orabug: 34340155] [1:1.8.0.422.b05-1.1] - Update to shenandoah-jdk8u422-b05 (GA) - Update release notes for shenandoah-8u422-b05. - Rebase PR2462 patch following patched hunk being removed by JDK-8322106 - Switch to GA mode. - Sync the copy of the portable specfile with the latest update - Actually require tzdata 2024a now it is available in the buildroot - Add missing build dependencies on zlib-devel and tar - Update LCMS version to match JDK-8245400 - ** This tarball is embargoed until 2024-07-16 @ 1pm PT. ** - Resolves: RHEL-46860 - Resolves: RHEL-47011 [1:1.8.0.422.b01-0.1.ea] - Update to shenandoah-jdk8u422-b01 (EA) - Update release notes for shenandoah-8u422-b01. - Switch to EA mode. - Sync the copy of the portable specfile with the latest update - Update NEWS file and rename remove-intree-libraries.sh so portable can be rebuilt - Document policy repacking script and rename to correct spelling and style - Limit Java only tests to one architecture using jdk_test_arch - Temporarily include Zero-based architectures in jdk_test_arch until they are portable - Related: RHEL-46860 - Resolves: RHEL-47069 - Resolves: RHEL-47090

SRPMs

http://oss.oracle.com/ol9/SRPMS-updates//java-1.8.0-openjdk-1.8.0.422.b05-2.0.1.el9.src.rpm

x86_64

java-1.8.0-openjdk-1.8.0.422.b05-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-demo-1.8.0.422.b05-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-devel-1.8.0.422.b05-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-headless-1.8.0.422.b05-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-javadoc-1.8.0.422.b05-2.0.1.el9.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.422.b05-2.0.1.el9.noarch.rpm java-1.8.0-openjdk-src-1.8.0.422.b05-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-slowdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.422.b05-2.0.1.el9.x86_64.rpm

aarch64

java-1.8.0-openjdk-1.8.0.422.b05-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-demo-1.8.0.422.b05-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-devel-1.8.0.422.b05-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-headless-1.8.0.422.b05-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-javadoc-1.8.0.422.b05-2.0.1.el9.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.422.b05-2.0.1.el9.noarch.rpm java-1.8.0-openjdk-src-1.8.0.422.b05-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-slowdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.422.b05-2.0.1.el9.aarch64.rpm

i386

Severity
Related CVEs: CVE-2024-21131 CVE-2024-21138 CVE-2024-21140 CVE-2024-21144 CVE-2024-21145 CVE-2024-21147

Related News