An update that solves 4 vulnerabilities can now be installed.. # java-1_8_0-openj9-1.8.0.492-1.1 on GA media Announcement ID: openSUSE-SU-2026:10726-1 Rating: moderate Cross-References: * CVE-2026-22007 * CVE-2026-22016 * CVE-2026-22021 * CVE-2026-34268 CVSS scores: * CVE-2026-22007 ( SUSE ): 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N * CVE-2026-22007 ( SUSE ): 2.1 CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-22016 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-22016 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-22021 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2026-22021 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2026-34268 ( SUSE ): 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N * CVE-2026-34268 ( SUSE ): 2.1 CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves 4 vulnerabilities can now be installed. ## Description: These are all security issues fixed in the java-1_8_0-openj9-1.8.0.492-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * java-1_8_0-openj9 1.8.0.492-1.1 * java-1_8_0-openj9-accessibility 1.8.0.492-1.1 * java-1_8_0-openj9-demo 1.8.0.492-1.1 * java-1_8_0-openj9-devel 1.8.0.492-1.1 * java-1_8_0-openj9-headless 1.8.0.492-1.1 * java-1_8_0-openj9-javadoc 1.8.0.492-1.1 * java-1_8_0-openj9-src 1.8.0.492-1.1 ## References: * https://www.suse.com/security/cve/CVE-2026-22007.html * https://www.suse.com/security/cve/CVE-2026-22016.html * https://www.suse.com/security/cve/CVE-2026-22021.html * https://www.suse.com/security/cve/CVE-2026-34268.html . New openSUSE security advisory addresses four moderate vulnerabilities in java-1_8_0-openj9 package, enhancing system security.. openSUSE security advisory, java-1_8_0-openj9 vulnerabilities, moderatesecurity issues, openSUSE Tumbleweed. . LinuxSecurity.com Team
The updates include fixes for: Critical CVE-2026-7363: Use after free in Canvas Critical CVE-2026-7361: Use after free in iOS Critical CVE-2026-7344: Use after free in Accessibility Critical CVE-2026-7343: Use after free in Views. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-36fb406407 2026-05-04 01:07:05.793304+00:00 -------------------------------------------------------------------------------- Name : chromium Product : Fedora 42 Version : 147.0.7727.137 Release : 1.fc42 URL : http://www.chromium.org/Home Summary : A WebKit (Blink) powered web browser that Google doesn't want you to use Description : Chromium is an open-source web browser, powered by WebKit (Blink). -------------------------------------------------------------------------------- Update Information: The updates include fixes for: Critical CVE-2026-7363: Use after free in Canvas Critical CVE-2026-7361: Use after free in iOS Critical CVE-2026-7344: Use after free in Accessibility Critical CVE-2026-7343: Use after free in Views High CVE-2026-7333: Use after free in GPU High CVE-2026-7360: Insufficient validation of untrusted input in Compositing High CVE-2026-7359: Use after free in ANGLE High CVE-2026-7358: Use after free in Animation High CVE-2026-7334: Use after free in Views High CVE-2026-7357: Use after free in GPU High CVE-2026-7356: Use after free in Navigation High CVE-2026-7354: Out of bounds read and write in Angle High CVE-2026-7353: Heap buffer overflow in Skia High CVE-2026-7352: Use after free in Media High CVE-2026-7351: Race in MHTML High CVE-2026-7350: Use after free in WebMIDI High CVE-2026-7349: Use after free in Cast High CVE-2026-7348: Use after free in Codecs High CVE-2026-7335: Use after free in media High CVE-2026-7336: Use after free in WebRTC High CVE-2026-7337: Type Confusion in V8 High CVE-2026-7347: Use after free in Chromoting High CVE-2026-7346: Inappropriateimplementation in Tint High CVE-2026-7345: Insufficient validation of untrusted input in Feedback High CVE-2026-7338: Use after free in Cast High CVE-2026-7342: Use after free in WebView High CVE-2026-7341: Use after free in WebRTC Medium CVE-2026-7339: Heap buffer overflow in WebRTC Medium CVE-2026-7340: Integer overflow in ANGLE Medium CVE-2026-7355: Use after free in Media -------------------------------------------------------------------------------- ChangeLog: * Wed Apr 29 2026 Than Ngo - 147.0.7727.137-1 - Update to 147.0.7727.137 * Critical CVE-2026-7363: Use after free in Canvas * Critical CVE-2026-7361: Use after free in iOS * Critical CVE-2026-7344: Use after free in Accessibility * Critical CVE-2026-7343: Use after free in Views * High CVE-2026-7333: Use after free in GPU * High CVE-2026-7360: Insufficient validation of untrusted input in Compositing * High CVE-2026-7359: Use after free in ANGLE * High CVE-2026-7358: Use after free in Animation * High CVE-2026-7334: Use after free in Views * High CVE-2026-7357: Use after free in GPU * High CVE-2026-7356: Use after free in Navigation * High CVE-2026-7354: Out of bounds read and write in Angle * High CVE-2026-7353: Heap buffer overflow in Skia * High CVE-2026-7352: Use after free in Media * High CVE-2026-7351: Race in MHTML * High CVE-2026-7350: Use after free in WebMIDI * High CVE-2026-7349: Use after free in Cast * High CVE-2026-7348: Use after free in Codecs * High CVE-2026-7335: Use after free in media * High CVE-2026-7336: Use after free in WebRTC * High CVE-2026-7337: Type Confusion in V8 * High CVE-2026-7347: Use after free in Chromoting * High CVE-2026-7346: Inappropriate implementation in Tint * High CVE-2026-7345: Insufficient validation of untrusted input in Feedback * High CVE-2026-7338: Use after free in Cast * High CVE-2026-7342: Use after free in WebView * High CVE-2026-7341: Use after free in WebRTC * MediumCVE-2026-7339: Heap buffer overflow in WebRTC * Medium CVE-2026-7340: Integer overflow in ANGLE * Medium CVE-2026-7355: Use after free in Media * Sun Apr 26 2026 Than Ngo - 147.0.7727.116-2 - Fix FTBFS with rust 1.95 - Backport the upstream fix GL native pixmap import support reset in GpuInit -------------------------------------------------------------------------------- References: [ 1 ] Bug #2463710 - CVE-2026-7333 CVE-2026-7334 CVE-2026-7335 CVE-2026-7336 CVE-2026-7337 CVE-2026-7338 CVE-2026-7339 CVE-2026-7340 CVE-2026-7341 CVE-2026-7342 CVE-2026-7343 CVE-2026-7344 CVE-2026-7345 CVE-2026-7346 CVE-2026-7347 ... chromium: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2463710 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-36fb406407' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Qt 6.10.3 bugfix update.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-70776c2dc3 2026-04-25 01:21:36.172096+00:00 -------------------------------------------------------------------------------- Name : qt6-qtspeech Product : Fedora 44 Version : 6.10.3 Release : 1.fc44 URL : http://www.qt.io Summary : Qt6 - Speech component Description : The module enables a Qt application to support accessibility features such as text-to-speech, which is useful for end-users who are visually challenged or cannot access the application for whatever reason. The most common use case where text-to-speech comes in handy is when the end-user is driving and cannot attend the incoming messages on the phone. In such a scenario, the messaging application can read out the incoming message. Qt Serial Port provides the basic functionality, which includes configuring, I/O operations, getting and setting the control signals of the RS-232 pinouts. -------------------------------------------------------------------------------- Update Information: Qt 6.10.3 bugfix update. -------------------------------------------------------------------------------- ChangeLog: * Tue Mar 31 2026 Jan Grulich - 6.10.3-1 - 6.10.3 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-70776c2dc3' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-18814 http://linux.oracle.com/errata/ELSA-2025-18814.html The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: x86_64: java-1.8.0-openjdk-1.8.0.472.b08-1.0.1.el7_9.i686.rpm java-1.8.0-openjdk-1.8.0.472.b08-1.0.1.el7_9.x86_64.rpm java-1.8.0-openjdk-accessibility-1.8.0.472.b08-1.0.1.el7_9.i686.rpm java-1.8.0-openjdk-accessibility-1.8.0.472.b08-1.0.1.el7_9.x86_64.rpm java-1.8.0-openjdk-demo-1.8.0.472.b08-1.0.1.el7_9.i686.rpm java-1.8.0-openjdk-demo-1.8.0.472.b08-1.0.1.el7_9.x86_64.rpm java-1.8.0-openjdk-devel-1.8.0.472.b08-1.0.1.el7_9.i686.rpm java-1.8.0-openjdk-devel-1.8.0.472.b08-1.0.1.el7_9.x86_64.rpm java-1.8.0-openjdk-headless-1.8.0.472.b08-1.0.1.el7_9.i686.rpm java-1.8.0-openjdk-headless-1.8.0.472.b08-1.0.1.el7_9.x86_64.rpm java-1.8.0-openjdk-javadoc-1.8.0.472.b08-1.0.1.el7_9.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.472.b08-1.0.1.el7_9.noarch.rpm java-1.8.0-openjdk-src-1.8.0.472.b08-1.0.1.el7_9.i686.rpm java-1.8.0-openjdk-src-1.8.0.472.b08-1.0.1.el7_9.x86_64.rpm SRPMS: http://oss.oracle.com/ol7/SRPMS-updates/java-1.8.0-openjdk-1.8.0.472.b08-1.0.1.el7_9.src.rpm Related CVEs: CVE-2025-53057 CVE-2025-53066 Description of changes: [1.8.0.472.b08-1.0.1] - Update to 8u472-b08 (GA) [Orabug: 38571645] - Update release notes for 8u472-b08. - Drop local JDK-8339414 fix as this is now included upstream - Reset rpmrelease to 1 now there are no other RPM builds on RHEL 8 - Sync the copy of the portable specfile with the latest update - ** This tarball is embargoed until 2025-10-21 @ 1pm PT. ** - Resolves: RHEL-118769 - Resolves: RHEL-119444 - Fixes CVE-2025-53057 CVE-2025-53066 [1:1.8.0.462.b08-1.0.1] - Update to 8u462-b08 (GA) [Orabug: 38248370] - Update release notes for 8u462-b08. - Require tzdata 2025b due to upstream inclusion of JDK-8352716 - Add early backport of JDK-8339414 - Sync the copy of the portablespecfile with the latest update - ** This tarball is embargoed until 2025-07-15 @ 1pm PT. ** - Resolves: RHEL-101654 - Resolves: RHEL-102307 - Resolves: RHEL-102907 [1.8.0.452.b09-1.0.1] - Update to 8u452-b09 (GA) [Orabug: 38144314] - Update release notes for 8u452-b09. - Remove long option documentation from JDK-8335912/JDK-8337499 as not present in 8u - Require tzdata 2025a due to upstream inclusion of JDK-8347965 - ** This tarball is embargoed until 2025-04-15 @ 1pm PT. ** - Resolves: RHEL-86973 - Resolves: RHEL-86616 [1:1.8.0.442.b06-1.0.3] - Fixed CVE-2025-21587, CVE-2025-30691 and CVE-2025-30698 [Orabug: 37840723] [1:1.8.0.442.b06-1.0.1] - Update to 8u442-b06 (GA) [Orabug: 37506184] - Update release notes for 8u442-b06. - Add a simple -version check on both the JDK and JRE bin/java _______________________________________________ El-errata mailing list
Qt 5.15.18 bugfix release. Qt5 WebEngine update to 5.15.19.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-976ccd79ae 2025-11-06 02:22:59.541317+00:00 -------------------------------------------------------------------------------- Name : qt5-qtspeech Product : Fedora 42 Version : 5.15.18 Release : 1.fc42 URL : http://www.qt.io Summary : Qt5 - Speech component Description : The module enables a Qt application to support accessibility features such as text-to-speech, which is useful for end-users who are visually challenged or cannot access the application for whatever reason. The most common use case where text-to-speech comes in handy is when the end-user is driving and cannot attend the incoming messages on the phone. In such a scenario, the messaging application can read out the incoming message. Qt Serial Port provides the basic functionality, which includes configuring, I/O operations, getting and setting the control signals of the RS-232 pinouts. -------------------------------------------------------------------------------- Update Information: Qt 5.15.18 bugfix release. Qt5 WebEngine update to 5.15.19. -------------------------------------------------------------------------------- ChangeLog: * Tue Nov 4 2025 Jan Grulich - 5.15.18-1 - 5.15.18 * Fri Jul 25 2025 Fedora Release Engineering - 5.15.17-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-976ccd79ae' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Qt 6.9.3 bugfix update.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-945dff8564 2025-10-30 04:33:58.492914+00:00 -------------------------------------------------------------------------------- Name : qt6-qtspeech Product : Fedora 42 Version : 6.9.3 Release : 1.fc42 URL : http://www.qt.io Summary : Qt6 - Speech component Description : The module enables a Qt application to support accessibility features such as text-to-speech, which is useful for end-users who are visually challenged or cannot access the application for whatever reason. The most common use case where text-to-speech comes in handy is when the end-user is driving and cannot attend the incoming messages on the phone. In such a scenario, the messaging application can read out the incoming message. Qt Serial Port provides the basic functionality, which includes configuring, I/O operations, getting and setting the control signals of the RS-232 pinouts. -------------------------------------------------------------------------------- Update Information: Qt 6.9.3 bugfix update. -------------------------------------------------------------------------------- ChangeLog: * Mon Oct 20 2025 Jan Grulich - 6.9.3-1 - 6.9.3 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2402380 - CVE-2025-10729 qt6-qtsvg: Use-after-free vulnerability in Qt SVG [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2402380 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-945dff8564' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details onthe GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
* bsc#1246556 * bsc#1247367 Cross-References: * CVE-2025-54388 . # Security update for docker Announcement ID: SUSE-SU-2025:02913-1 Release Date: 2025-08-19T12:52:47Z Rating: moderate References: * bsc#1246556 * bsc#1247367 Cross-References: * CVE-2025-54388 CVSS scores: * CVE-2025-54388 ( SUSE ): 5.1 CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N * CVE-2025-54388 ( SUSE ): 5.2 CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N * CVE-2025-54388 ( NVD ): 5.1 CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X Affected Products: * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server 12 SP5 LTSS * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security * SUSE Linux Enterprise Server for SAP Applications 12 SP5 An update that solves one vulnerability and has one security fix can now be installed. ## Description: This update for docker fixes the following issues: * Update to Docker 28.3.3-ce. * CVE-2025-54388: Fixed a bug where firewalld when reloaded can make published container ports accessible from remote hosts. (bsc#1247367) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 12 SP5 LTSS zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-2025-2913=1 * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2025-2913=1 ## Package List: * SUSE Linux Enterprise Server 12 SP5 LTSS (aarch64 ppc64le s390x x86_64) * docker-28.3.3_ce-98.137.1 * docker-debuginfo-28.3.3_ce-98.137.1 * SUSE Linux Enterprise Server 12 SP5 LTSS (noarch) *docker-bash-completion-28.3.3_ce-98.137.1 * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (x86_64) * docker-28.3.3_ce-98.137.1 * docker-debuginfo-28.3.3_ce-98.137.1 * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security (noarch) * docker-bash-completion-28.3.3_ce-98.137.1 ## References: * https://www.suse.com/security/cve/CVE-2025-54388.html * https://bugzilla.suse.com/show_bug.cgi?id=1246556 * https://bugzilla.suse.com/show_bug.cgi?id=1247367 . SUSE has rolled out a patch that mitigates a significant security vulnerability in Docker, specifically targeting access control deficiencies associated with CVE-2025-54388.. SUSE Linux, Docker update, security access control, CVE-2025-54388, package management. . LinuxSecurity.com Team
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-10862 http://linux.oracle.com/errata/ELSA-2025-10862.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable LinuxNetwork: x86_64: java-1.8.0-openjdk-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-accessibility-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-accessibility-fastdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-accessibility-slowdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-demo-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-devel-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-headless-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-javadoc-1.8.0.462.b08-2.0.1.el8.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.462.b08-2.0.1.el8.noarch.rpm java-1.8.0-openjdk-slowdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-src-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.462.b08-2.0.1.el8.x86_64.rpm aarch64: java-1.8.0-openjdk-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-accessibility-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-accessibility-fastdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-accessibility-slowdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-demo-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-devel-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-headless-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-javadoc-1.8.0.462.b08-2.0.1.el8.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.462.b08-2.0.1.el8.noarch.rpm java-1.8.0-openjdk-slowdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-src-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.462.b08-2.0.1.el8.aarch64.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates/java-1.8.0-openjdk-1.8.0.462.b08-2.0.1.el8.src.rpm Related CVEs: CVE-2025-30749 CVE-2025-30754 CVE-2025-30761 CVE-2025-50106 Description of changes: [1:1.8.0.462.b08-2.0.1] - Add Oracle vendor bug URL [Orabug: 34340155] [1:1.8.0.462.b08-1] - Update to 8u462-b08 (GA) - Update release notes for 8u462-b08. - Require tzdata 2025b due to upstream inclusion of JDK-8352716 - Add early backport of JDK-8339414 - Sync the copy of the portable specfile with the latest update - ** This tarball is embargoed until 2025-07-15 @ 1pm PT. ** - Resolves: RHEL-101654 - Resolves: RHEL-102307 - Resolves: RHEL-102907 _______________________________________________ El-errata mailing list
Get the latest Linux and open source security news straight to your inbox.