Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 471
Alerts This Week
Warning Icon 1 471

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":75,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found 372 articles for you...
203

Mageia 9 Java Important Security Update CVE-2026-22007 CVE-2026-22008

Security update. Publication date: 02 Jun 2026 URL: https://advisories.mageia.org/MGAA-2026-0031.html Type: bugfix Affected Mageia releases: 9 CVE: CVE-2026-22007, CVE-2026-22008, CVE-2026-22013, CVE-2026-22016, CVE-2026-22018, CVE-2026-22021, CVE-2026-23865, CVE-2026-34268, CVE-2026-34282 Description: Enhance crypto algorithm support. (CVE-2026-22007) Improved Arena allocations. (CVE-2026-22008) Improve Kerberos credentialing. (CVE-2026-22013) Enhance Path Factories Redux. (CVE-2026-22016) Enhance Zip file reading. (CVE-2026-22018) Enhance certificate chain validation. (CVE-2026-22021) Updating FreeType 2.14.1 . (CVE-2026-23865) Enhance key generation. (CVE-2026-34268) Enhance TLS connection handling. (CVE-2026-34282) References: - https://bugs.mageia.org/show_bug.cgi?id=35402 - https://access.redhat.com/errata/RHSA-2026:9682 - https://access.redhat.com/errata/RHSA-2026:9254 - https://access.redhat.com/errata/RHSA-2026:9686 - https://access.redhat.com/errata/RHSA-2026:9690 - https://access.redhat.com/errata/RHSA-2026:9693 - https://www.oracle.com/security-alerts/cpuapr2026.html#AppendixJAVA - https://www.cve.org/CVERecord?id=CVE-2026-22007 - https://www.cve.org/CVERecord?id=CVE-2026-22008 - https://www.cve.org/CVERecord?id=CVE-2026-22013 - https://www.cve.org/CVERecord?id=CVE-2026-22016 - https://www.cve.org/CVERecord?id=CVE-2026-22018 - https://www.cve.org/CVERecord?id=CVE-2026-22021 - https://www.cve.org/CVERecord?id=CVE-2026-23865 - https://www.cve.org/CVERecord?id=CVE-2026-34268 - https://www.cve.org/CVERecord?id=CVE-2026-34282 SRPMS: - 9/core/java-1.8.0-openjdk-1.8.0.492.b09-1.mga9 - 9/core/java-11-openjdk-11.0.31.0.11-1.mga9 - 9/core/java-17-openjdk-17.0.19.0.10-1.mga9 - 9/core/java-latest-openjdk-25.0.3.0.9-1.rolling.1.mga9 . Mageia update enhances crypto support and improves various components to ensure better security.. Mageia Java update, security advisory, crypto enhancements, bugfix improvements. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Jun 02, 2026 Important Mageia
202

openSUSE Tumbleweed java-1_8_0-openj9 Moderate Security Issue CVE-2026-1188

An update that solves one vulnerability can now be installed.. # java-1_8_0-openj9-1.8.0.492-2.1 on GA media Announcement ID: openSUSE-SU-2026:10790-1 Rating: moderate Cross-References: * CVE-2026-1188 CVSS scores: * CVE-2026-1188 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Tumbleweed An update that solves one vulnerability can now be installed. ## Description: These are all security issues fixed in the java-1_8_0-openj9-1.8.0.492-2.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * java-1_8_0-openj9 1.8.0.492-2.1 * java-1_8_0-openj9-accessibility 1.8.0.492-2.1 * java-1_8_0-openj9-demo 1.8.0.492-2.1 * java-1_8_0-openj9-devel 1.8.0.492-2.1 * java-1_8_0-openj9-headless 1.8.0.492-2.1 * java-1_8_0-openj9-javadoc 1.8.0.492-2.1 * java-1_8_0-openj9-src 1.8.0.492-2.1 ## References: * https://www.suse.com/security/cve/CVE-2026-1188.html . An update for openSUSE addresses a moderate security issue in java-1_8_0-openj9, ensuring safer operations.. openSUSE java update security moderate CVE-2026-1188. . LinuxSecurity.com Team

Calendar%202 May 17, 2026 OpenSUSE
202

openSUSE Tumbleweed java-26-openj9 Moderate Threat Advisory 10729-1

An update that solves 5 vulnerabilities can now be installed.. # java-25-openj9-25.0.3.0-1.1 on GA media Announcement ID: openSUSE-SU-2026:10728-1 Rating: moderate Cross-References: * CVE-2026-22007 * CVE-2026-22013 * CVE-2026-22018 * CVE-2026-23865 * CVE-2026-34282 CVSS scores: * CVE-2026-22007 ( SUSE ): 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N * CVE-2026-22007 ( SUSE ): 2.1 CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-22013 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N * CVE-2026-22013 ( SUSE ): 6 CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-22018 ( SUSE ): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2026-22018 ( SUSE ): 6.3 CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2026-23865 ( SUSE ): 5.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L * CVE-2026-23865 ( SUSE ): 4.6 CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N * CVE-2026-34282 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2026-34282 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves 5 vulnerabilities can now be installed. ## Description: These are all security issues fixed in the java-25-openj9-25.0.3.0-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * java-25-openj9 25.0.3.0-1.1 * java-25-openj9-demo 25.0.3.0-1.1 * java-25-openj9-devel 25.0.3.0-1.1 * java-25-openj9-headless 25.0.3.0-1.1 * java-25-openj9-javadoc 25.0.3.0-1.1 * java-25-openj9-jmods 25.0.3.0-1.1 * java-25-openj9-src 25.0.3.0-1.1 ## References: * https://www.suse.com/security/cve/CVE-2026-22007.html * https://www.suse.com/security/cve/CVE-2026-22013.html * https://www.suse.com/security/cve/CVE-2026-22018.html * https://www.suse.com/security/cve/CVE-2026-23865.html * https://www.suse.com/security/cve/CVE-2026-34282.html . Update for openSUSE fixes five security issues in java-25-openj9, categorized as moderate severity, important to install.. openSUSE security advisory, java update, moderate severity vulnerability. . LinuxSecurity.com Team

Calendar%202 May 11, 2026 OpenSUSE
202

openSUSE Tumbleweed java-21-openj9 Security Flaws Advisory 2026-10727-1

An update that solves 4 vulnerabilities can now be installed.. # java-21-openj9-21.0.11.0-1.1 on GA media Announcement ID: openSUSE-SU-2026:10727-1 Rating: moderate Cross-References: * CVE-2026-22007 * CVE-2026-22016 * CVE-2026-22021 * CVE-2026-34268 CVSS scores: * CVE-2026-22007 ( SUSE ): 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N * CVE-2026-22007 ( SUSE ): 2.1 CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-22016 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-22016 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-22021 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2026-22021 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2026-34268 ( SUSE ): 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N * CVE-2026-34268 ( SUSE ): 2.1 CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves 4 vulnerabilities can now be installed. ## Description: These are all security issues fixed in the java-21-openj9-21.0.11.0-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * java-21-openj9 21.0.11.0-1.1 * java-21-openj9-demo 21.0.11.0-1.1 * java-21-openj9-devel 21.0.11.0-1.1 * java-21-openj9-headless 21.0.11.0-1.1 * java-21-openj9-javadoc 21.0.11.0-1.1 * java-21-openj9-jmods 21.0.11.0-1.1 * java-21-openj9-src 21.0.11.0-1.1 ## References: * https://www.suse.com/security/cve/CVE-2026-22007.html * https://www.suse.com/security/cve/CVE-2026-22016.html * https://www.suse.com/security/cve/CVE-2026-22021.html * https://www.suse.com/security/cve/CVE-2026-34268.html . Install the latest openSUSE security update addressing 4 Java vulnerabilities rated moderate to ensure system safety.. openSUSE Tumbleweed update, java-21-openj9 security, moderate CVE fixes. . LinuxSecurity.com Team

Calendar%202 May 10, 2026 OpenSUSE
202

openSUSE Leap Java-11-openj9 Stability Update for openSUSE-SU-2026-10831-4

An update that solves 4 vulnerabilities can now be installed.. # java-1_8_0-openj9-1.8.0.492-1.1 on GA media Announcement ID: openSUSE-SU-2026:10726-1 Rating: moderate Cross-References: * CVE-2026-22007 * CVE-2026-22016 * CVE-2026-22021 * CVE-2026-34268 CVSS scores: * CVE-2026-22007 ( SUSE ): 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N * CVE-2026-22007 ( SUSE ): 2.1 CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-22016 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2026-22016 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N * CVE-2026-22021 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L * CVE-2026-22021 ( SUSE ): 6.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N * CVE-2026-34268 ( SUSE ): 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N * CVE-2026-34268 ( SUSE ): 2.1 CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N Affected Products: * openSUSE Tumbleweed An update that solves 4 vulnerabilities can now be installed. ## Description: These are all security issues fixed in the java-1_8_0-openj9-1.8.0.492-1.1 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * java-1_8_0-openj9 1.8.0.492-1.1 * java-1_8_0-openj9-accessibility 1.8.0.492-1.1 * java-1_8_0-openj9-demo 1.8.0.492-1.1 * java-1_8_0-openj9-devel 1.8.0.492-1.1 * java-1_8_0-openj9-headless 1.8.0.492-1.1 * java-1_8_0-openj9-javadoc 1.8.0.492-1.1 * java-1_8_0-openj9-src 1.8.0.492-1.1 ## References: * https://www.suse.com/security/cve/CVE-2026-22007.html * https://www.suse.com/security/cve/CVE-2026-22016.html * https://www.suse.com/security/cve/CVE-2026-22021.html * https://www.suse.com/security/cve/CVE-2026-34268.html . New openSUSE security advisory addresses four moderate vulnerabilities in java-1_8_0-openj9 package, enhancing system security.. openSUSE security advisory, java-1_8_0-openj9 vulnerabilities, moderatesecurity issues, openSUSE Tumbleweed. . LinuxSecurity.com Team

Calendar%202 May 10, 2026 OpenSUSE
217

Oracle Linux 8 ELSA-2026-9683 Java 1.8.0 OpenJDK Important Security Fix

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-9683 http://linux.oracle.com/errata/ELSA-2026-9683.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable LinuxNetwork: x86_64: java-1.8.0-openjdk-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-accessibility-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-accessibility-fastdebug-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-accessibility-slowdebug-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-demo-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-devel-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-headless-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-javadoc-1.8.0.492.b09-1.0.1.el8.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.492.b09-1.0.1.el8.noarch.rpm java-1.8.0-openjdk-slowdebug-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-src-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.492.b09-1.0.1.el8.x86_64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.492.b09-1.0.1.el8.x86_64.rpm aarch64: java-1.8.0-openjdk-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-accessibility-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-accessibility-fastdebug-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-accessibility-slowdebug-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-demo-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-devel-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-headless-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-javadoc-1.8.0.492.b09-1.0.1.el8.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.492.b09-1.0.1.el8.noarch.rpm java-1.8.0-openjdk-slowdebug-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-src-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.492.b09-1.0.1.el8.aarch64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.492.b09-1.0.1.el8.aarch64.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates/java-1.8.0-openjdk-1.8.0.492.b09-1.0.1.el8.src.rpm Related CVEs: CVE-2026-22007 CVE-2026-22013 CVE-2026-22016 CVE-2026-22018 CVE-2026-22021 CVE-2026-23865 CVE-2026-34268 Description of changes: [1:1.8.0.492.b09-1.0.1] - Add Oracle vendor bug URL [Orabug: 34340155] [1:1.8.0.492.b09-1] - Update to 8u492-b09 (GA) - Update release notes for 8u492-b09. - Add missing CVEs for 8u482. - Regenerate JDK-8199936/PR3533 patch following JDK-8374917 - Regenerate JDK-8186464/RH1433262 patch following JDK-8370986 - Drop local giflib 5.2.2 patch now JDK-8328999 is included upstream - Bump freetype version to 2.14.2 following JDK-8373290 & JDK-8379158 - Bump giflib version to 6.1.2 following JDK-8379256 & JDK-8380078 - Bump LCMS 2 version to 2.15.0 following JDK-8303482 - Bump libpng version to 1.6.57 following JDK-8375063, JDK-8377526, JDK-8380959 & JDK-8382047 - Sync the copy of the portable specfile with the latest update - ** This tarball is embargoed until 2026-04-21 @ 1pm PT. ** - Resolves: RHEL-169448 - Resolves: RHEL-133223 - Resolves: RHEL-146656 - Resolves: RHEL-148335 - Resolves: RHEL-148848 - Resolves: RHEL-161225 - Resolves: RHEL-161341 - Resolves: RHEL-157098 - Resolves: RHEL-157149 _______________________________________________ El-errata mailinglist This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux 8 updates for java-1.8.0-openjdk address important security issues and enhance system integrity.. Oracle Linux 8, java security updates, OpenJDK advisory, remote access security, important security issues. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Apr 28, 2026 Important Oracle
217

Oracle Linux 9 ELSA-2026-9683 Java-1.8.0-openjdk Important DoS

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-9683 http://linux.oracle.com/errata/ELSA-2026-9683.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable LinuxNetwork: x86_64: java-1.8.0-openjdk-1.8.0.492.b09-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-demo-1.8.0.492.b09-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.492.b09-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.492.b09-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-devel-1.8.0.492.b09-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.492.b09-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.492.b09-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.492.b09-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-headless-1.8.0.492.b09-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.492.b09-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.492.b09-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-javadoc-1.8.0.492.b09-2.0.1.el9.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.492.b09-2.0.1.el9.noarch.rpm java-1.8.0-openjdk-slowdebug-1.8.0.492.b09-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-src-1.8.0.492.b09-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.492.b09-2.0.1.el9.x86_64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.492.b09-2.0.1.el9.x86_64.rpm aarch64: java-1.8.0-openjdk-1.8.0.492.b09-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-demo-1.8.0.492.b09-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.492.b09-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.492.b09-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-devel-1.8.0.492.b09-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.492.b09-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.492.b09-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.492.b09-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-headless-1.8.0.492.b09-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.492.b09-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.492.b09-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-javadoc-1.8.0.492.b09-2.0.1.el9.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.492.b09-2.0.1.el9.noarch.rpm java-1.8.0-openjdk-slowdebug-1.8.0.492.b09-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-src-1.8.0.492.b09-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.492.b09-2.0.1.el9.aarch64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.492.b09-2.0.1.el9.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates/java-1.8.0-openjdk-1.8.0.492.b09-2.0.1.el9.src.rpm Related CVEs: CVE-2026-22007 CVE-2026-22013 CVE-2026-22016 CVE-2026-22018 CVE-2026-22021 CVE-2026-23865 CVE-2026-34268 Description of changes: [1:1.8.0.492.b09-2.0.1] - Add Oracle vendor bug URL [Orabug: 34340155] [1:1.8.0.492.b09-2] - Bump release for PQC build - Related: RHEL-169446 [1:1.8.0.492.b09-1] - Update to 8u492-b09 (GA) - Update release notes for 8u492-b09. - Add missing CVEs for 8u482. - Regenerate JDK-8199936/PR3533 patch following JDK-8374917 - Regenerate JDK-8186464/RH1433262 patch following JDK-8370986 - Drop local giflib 5.2.2 patch now JDK-8328999 is included upstream - Bump freetype version to 2.14.2 following JDK-8373290 & JDK-8379158 - Bump giflib version to 6.1.2 following JDK-8379256 & JDK-8380078 - Bump LCMS 2 version to 2.15.0 following JDK-8303482 - Bump libpng version to 1.6.57 following JDK-8375063, JDK-8377526, JDK-8380959 & JDK-8382047 - Sync the copy of the portable specfile with the latest update - ** This tarball is embargoed until 2026-04-21 @ 1pm PT. ** - Resolves: RHEL-169446 - Resolves: RHEL-133291 - Resolves: RHEL-147348 - Resolves: RHEL-148407 - Resolves: RHEL-148981 - Resolves: RHEL-161303 - Resolves: RHEL-161452 - Resolves: RHEL-157139 - Resolves: RHEL-157156 [1:1.8.0.482.b08-3] - Update tagging scripts to include signature checks and correctly handle gating - Add gating scripts to simplify obtaining results and waiving issues - Resolves: RHEL-147634 - Resolves: RHEL-151197 [1:1.8.0.482.b08-2] - Bump rpmrelease for CentOS build - Related: RHEL-142687 - Related: RHEL-139534 - Related: RHEL-131588 - Related: RHEL-131600 - Related: RHEL-142875 - Related: RHEL-142697 [1:1.8.0.482.b08-1] - Update to 8u482-b08 (GA). - Update release notes for 8u482-b08. -Remove generated-configure.sh changes from JDK-8141590 & FIPS patch as we already autogenerate this - Turn on system FreeType as on later JDK versions and add to _privatelibs - Set bundled FreeType version to 2.13.2 following JDK-8316028 - Bump LCMS 2 version to 2.14.0 following JDK-8297088 - Bump libpng version to 1.6.51 following JDK-8372534 - Update FIPS patch to include nss.fips.cfg that grants CKA_ENCRYPT - Handle 'upgrade' as an alternative to 'update' in openjdk_news.sh - Sync the copy of the portable specfile with the latest update - ** This tarball is embargoed until 2026-01-20 @ 1pm PT. ** - Resolves: RHEL-142687 - Resolves: RHEL-139534 - Resolves: RHEL-131588 - Resolves: RHEL-131600 - Resolves: RHEL-142875 - Resolves: RHEL-142697 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Oracle Linux 9 advisory details updates to java-1.8.0-openjdk addressing important security issues.. Oracle Security Advisory, Linux Update, Java Security Patch, JVM Security Issues. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Apr 28, 2026 Important Oracle
217

Oracle Linux 9 java-25-openjdk Key Security Patch ELSA-2026-9700

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-9693 http://linux.oracle.com/errata/ELSA-2026-9693.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable LinuxNetwork: x86_64: java-25-openjdk-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-crypto-adapter-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-crypto-adapter-fastdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-crypto-adapter-slowdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-demo-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-demo-fastdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-demo-slowdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-devel-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-devel-fastdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-devel-slowdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-fastdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-headless-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-headless-fastdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-headless-slowdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-javadoc-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-javadoc-zip-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-jmods-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-jmods-fastdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-jmods-slowdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-slowdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-src-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-src-fastdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-src-slowdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-static-libs-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-static-libs-fastdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm java-25-openjdk-static-libs-slowdebug-25.0.3.0.9-1.0.1.el9.x86_64.rpm aarch64: java-25-openjdk-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-crypto-adapter-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-crypto-adapter-fastdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-crypto-adapter-slowdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-demo-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-demo-fastdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-demo-slowdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-devel-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-devel-fastdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-devel-slowdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-fastdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-headless-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-headless-fastdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-headless-slowdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-javadoc-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-javadoc-zip-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-jmods-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-jmods-fastdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-jmods-slowdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-slowdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-src-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-src-fastdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-src-slowdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-static-libs-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-static-libs-fastdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm java-25-openjdk-static-libs-slowdebug-25.0.3.0.9-1.0.1.el9.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates/java-25-openjdk-25.0.3.0.9-1.0.1.el9.src.rpm Related CVEs: CVE-2026-22007 CVE-2026-22008 CVE-2026-22013 CVE-2026-22016 CVE-2026-22018 CVE-2026-22021 CVE-2026-23865 CVE-2026-26740 CVE-2026-33416 CVE-2026-33636 CVE-2026-34268 CVE-2026-34282 Description of changes: [1:25.0.3.0.9-1.0.1] - Add Oracle vendor bug URL [Orabug: 34340155] [1:25.0.3.0.9-1] - Update to jdk-25.0.3+9 (GA) - Update release notes to 25.0.3+9 - Update FIPS patch to 57722aab802 version synced with 25.0.3+8 - Drop local libpng patches now JDK-8372534, JDK-8375063 & JDK-8377526 are included upstream - Drop local HarfBuzz patch now JDK-8375057 is included upstream - Bump freetype version to 2.14.2 following JDK-8373290 & JDK-8379158 - Bump giflib version to 6.1.2 following JDK-8379256 & JDK-8380078 - Bump libpngversion to 1.6.57 following JDK-8380959 & JDK-8382047 - Bump zlib version to 1.3.2 following JDK-8378631 - Add JDK-8375294 EOPNOTSUPP patch ahead of 25.0.4 - Sync the copy of the portable specfile with the latest update - ** This tarball is embargoed until 2026-04-21 @ 1pm PT. ** - Resolves: RHEL-169619 - Resolves: RHEL-157142 - Resolves: RHEL-157154 - Resolves: RHEL-161306 - Resolves: RHEL-161455 - Resolves: RHEL-169615 _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Important security patch available for java-25-openjdk on Oracle Linux addressing multiple security issues. Update recommended.. java update, oracle linux, security patch, openjdk security. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Apr 27, 2026 Important Oracle
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":75,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":25,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200