Alerts This Week
Warning Icon 1 700
Alerts This Week
Warning Icon 1 700

SUSE: 2024:3963-1 moderate: java-17-openjdk Security Update

suse
Calendar Grey November 11, 2024
Dist Suse Esm H88
This bulletin outlines a significant security enhancement for python-3.9, tackling various vulnerabilities with explicit citations.
* bsc#1231702 * bsc#1231711 * bsc#1231716 * bsc#1231719

Summary

## This update for java-17-openjdk fixes the following issues: * Update to upstream tag jdk-17.0.13+11 (October 2024 CPU) * Security fixes * JDK-8307383: Enhance DTLS connections * JDK-8290367, JDK-8332643: Update default value and extend the scope of com.sun.jndi.ldap.object.trustSerialData system property * JDK-8328286, CVE-2024-21208, bsc#1231702: Enhance HTTP client * JDK-8328544, CVE-2024-21210, bsc#1231711: Improve handling of vectorization * JDK-8328726: Better Kerberos support * JDK-8331446, CVE-2024-21217, bsc#1231716: Improve deserialization support * JDK-8332644, CVE-2024-21235, bsc#1231719: Improve graph optimizations * JDK-8335713: Enhance vectorization analysis * Other changes

References

* bsc#1231702

* bsc#1231711

* bsc#1231716

* bsc#1231719

Cross-

* CVE-2024-21208

* CVE-2024-21210

* CVE-2024-21217

* CVE-2024-21235

CVSS scores:

* CVE-2024-21208 ( SUSE ): 6.3

CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N

* CVE-2024-21208 ( SUSE ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L

* CVE-2024-21208 ( NVD ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L

* CVE-2024-21210 ( SUSE ): 6.3

CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N

* CVE-2024-21210 ( SUSE ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N

* CVE-2024-21210 ( NVD ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N

* CVE-2024-21217 ( SUSE ): 6.3

CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N

Announcement ID: SUSE-SU-2024:3963-1
Release Date: 2024-11-09T16:39:43Z
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here