Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

SUSE: 2024:3954-1 moderate: java-21-openjdk updates and fixes

suse
Calendar Grey November 8, 2024
Dist Suse Esm H88
Essential enhancements for java-21-openjdk address numerous challenges in SUSE Linux systems. Update today.
* bsc#1231702 * bsc#1231711 * bsc#1231716 * bsc#1231719

Summary

## This update for java-21-openjdk fixes the following issues: * Update to upstream tag jdk-21.0.5+13 (October 2024 CPU) * Security fixes * JDK-8307383: Enhance DTLS connections * JDK-8311208: Improve CDS Support * JDK-8328286, CVE-2024-21208, bsc#1231702: Enhance HTTP client * JDK-8328544, CVE-2024-21210, bsc#1231711: Improve handling of vectorization * JDK-8328726: Better Kerberos support * JDK-8331446, CVE-2024-21217, bsc#1231716: Improve deserialization support * JDK-8332644, CVE-2024-21235, bsc#1231719: Improve graph optimizations * JDK-8335713: Enhance vectorization analysis * Other changes * JDK-6355567: AdobeMarkerSegment causes failure to read valid JPEG * JDK-6967482: TAB-key does not work in JTables after selecting details-view in JFileChooser

References

* bsc#1231702

* bsc#1231711

* bsc#1231716

* bsc#1231719

Cross-

* CVE-2024-21208

* CVE-2024-21210

* CVE-2024-21217

* CVE-2024-21235

CVSS scores:

* CVE-2024-21208 ( SUSE ): 6.3

CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N

* CVE-2024-21208 ( SUSE ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L

* CVE-2024-21208 ( NVD ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L

* CVE-2024-21210 ( SUSE ): 6.3

CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N

* CVE-2024-21210 ( SUSE ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N

* CVE-2024-21210 ( NVD ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N

* CVE-2024-21217 ( SUSE ): 6.3

CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N

Announcement ID: SUSE-SU-2024:3954-1
Release Date: 2024-11-08T13:10:09Z
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here