Oracle Linux Security Advisory ELSA-2025-0422

http://linux.oracle.com/errata/ELSA-2025-0422.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
java-17-openjdk-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-demo-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-devel-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-headless-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-javadoc-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-javadoc-zip-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-jmods-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-src-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-static-libs-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-demo-fastdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-demo-slowdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-devel-fastdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-devel-slowdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-fastdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-headless-fastdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-headless-slowdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-jmods-fastdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-jmods-slowdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-slowdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-src-fastdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-src-slowdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-static-libs-fastdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm
java-17-openjdk-static-libs-slowdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm

aarch64:
java-17-openjdk-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-demo-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-devel-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-headless-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-javadoc-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-javadoc-zip-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-jmods-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-src-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-static-libs-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-demo-fastdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-demo-slowdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-devel-fastdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-devel-slowdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-fastdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-headless-fastdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-headless-slowdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-jmods-fastdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-jmods-slowdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-slowdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-src-fastdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-src-slowdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-static-libs-fastdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm
java-17-openjdk-static-libs-slowdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates//java-17-openjdk-17.0.14.0.7-3.0.1.el8.src.rpm

Related CVEs:

CVE-2025-21502




Description of changes:

[1:17.0.14.0.7-3.0.1]
- Add Oracle vendor bug URL [Orabug: 34340155]

[1:17.0.14.0.7-3]
- Set rpmrelease to 3
- Revert "Require tzdata-java 2024b at runtime and for build"

[1:17.0.14.0.7-2]
- Do not pass nil to _jvmdir macro in cjc logic
- Related: RHEL-73867

[1:17.0.14.0.7-2]
- Adapt to newest cjc to fix issue with rpm 4.17
- Disable copy-jdk-configs for Flatpak builds
- Remove cjc backward compatibility, to fix when both rpm 4.16 and 4.17 are in transaction
- Resolves: rhbz#1953923
- Resolves: RHEL-73867

[1:17.0.14.0.7-2]
- Update to jdk-17.0.14+7 (GA)
- Add to .gitignore openjdk-17.0.14+7.tar.xz
- Set buildver to 7
- Set is_ga to 1
- Update sources to openjdk-17.0.14+7.tar.xz
- Require tzdata-java 2024b at runtime and for build
- Sync java-17-openjdk-portable.specfile from openjdk-portable-rhel-8
- Resolves: RHEL-73545
- ** This tarball is embargoed until 2025-01-21 @ 1pm PT. **

[1:17.0.14.0.1-0.2.ea]
- Limit Java only tests to one architecture using jdk_test_arch
- OPENJDK-3185

[1:17.0.14.0.1-0.2.ea]
- Update to jdk-17.0.14+1 (EA)
- Add to .gitignore openjdk-17.0.14+1-ea.tar.xz
- Set updatever to 14
- Set buildver to 1
- Set rpmrelease to 2
- Set is_ga to 0
- Update sources to openjdk-17.0.14+1-ea.tar.xz
- Double percent signs consistently throughout comments
- Set bundled giflib provide version to 5.2.2
- Set bundled libpng provide version to 1.6.43
- Warn about bundled provide version bumps and backouts in openjdk_news.sh
- Remove 0001-8332174-Remove-2-unpaired-RLO-Unicode-characters-in-.patch file
- Revert: Use component in EPEL and Fedora bug URLs


_______________________________________________
El-errata mailing list
El-errata@oss.oracle.com
https://oss.oracle.com/mailman/listinfo/el-errata

Oracle8: ELSA-2025-0422: java-17-openjdk for RHEL 8.6, 8.8, 8.10, 9.4 and 9.5 Moderate Security Advisory Updates

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Summary

[1:17.0.14.0.7-3.0.1] - Add Oracle vendor bug URL [Orabug: 34340155] [1:17.0.14.0.7-3] - Set rpmrelease to 3 - Revert "Require tzdata-java 2024b at runtime and for build" [1:17.0.14.0.7-2] - Do not pass nil to _jvmdir macro in cjc logic - Related: RHEL-73867 [1:17.0.14.0.7-2] - Adapt to newest cjc to fix issue with rpm 4.17 - Disable copy-jdk-configs for Flatpak builds - Remove cjc backward compatibility, to fix when both rpm 4.16 and 4.17 are in transaction - Resolves: rhbz#1953923 - Resolves: RHEL-73867 [1:17.0.14.0.7-2] - Update to jdk-17.0.14+7 (GA) - Add to .gitignore openjdk-17.0.14+7.tar.xz - Set buildver to 7 - Set is_ga to 1 - Update sources to openjdk-17.0.14+7.tar.xz - Require tzdata-java 2024b at runtime and for build - Sync java-17-openjdk-portable.specfile from openjdk-portable-rhel-8 - Resolves: RHEL-73545 - ** This tarball is embargoed until 2025-01-21 @ 1pm PT. ** [1:17.0.14.0.1-0.2.ea] - Limit Java only tests to one architecture using jdk_test_arch - OPENJDK-...

Read the Full Advisory

SRPMs

http://oss.oracle.com/ol8/SRPMS-updates//java-17-openjdk-17.0.14.0.7-3.0.1.el8.src.rpm

x86_64

java-17-openjdk-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-demo-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-devel-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-headless-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-javadoc-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-javadoc-zip-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-jmods-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-src-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-static-libs-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-demo-fastdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-demo-slowdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-devel-fastdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-devel-slowdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-fastdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-headless-fastdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-headless-slowdebug-17.0.14.0.7-3.0.1.el8.x86_64.rpm java-17-openjdk-jmods-fastdebug-17.0.14.0...

Read the Full Advisory

aarch64

java-17-openjdk-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-demo-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-devel-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-headless-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-javadoc-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-javadoc-zip-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-jmods-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-src-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-static-libs-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-demo-fastdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-demo-slowdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-devel-fastdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-devel-slowdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-fastdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-headless-fastdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-headless-slowdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-jmods-fastdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-jmods-slowdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-slowdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-src-fastdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-src-slowdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-static-libs-fastdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm java-17-openjdk-static-libs-slowdebug-17.0.14.0.7-3.0.1.el8.aarch64.rpm

i386

Severity
Related CVEs: CVE-2025-21502

Related News