Oracle Linux Security Advisory ELSA-2024-8121

http://linux.oracle.com/errata/ELSA-2024-8121.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
java-11-openjdk-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-demo-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-devel-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-headless-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-javadoc-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-javadoc-zip-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-jmods-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-src-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-static-libs-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-demo-fastdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-demo-slowdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-devel-fastdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-devel-slowdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-fastdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-headless-fastdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-headless-slowdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-jmods-fastdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-jmods-slowdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-slowdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-src-fastdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-src-slowdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-static-libs-fastdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm
java-11-openjdk-static-libs-slowdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm

aarch64:
java-11-openjdk-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-demo-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-devel-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-headless-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-javadoc-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-javadoc-zip-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-jmods-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-src-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-static-libs-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-demo-fastdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-demo-slowdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-devel-fastdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-devel-slowdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-fastdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-headless-fastdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-headless-slowdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-jmods-fastdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-jmods-slowdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-slowdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-src-fastdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-src-slowdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-static-libs-fastdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm
java-11-openjdk-static-libs-slowdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//java-11-openjdk-11.0.25.0.9-2.0.1.el9.src.rpm

Related CVEs:

CVE-2023-48161
CVE-2024-21208
CVE-2024-21210
CVE-2024-21217
CVE-2024-21235




Description of changes:

[1:11.0.25.0.9-2.0.1]
- Add Oracle vendor bug URL [Orabug: 34340155]

[1:11.0.25.0.9-2]
- Update to jdk-11.0.25+9 (GA)
- Update release notes to 11.0.25+9
- Switch to GA mode for release
- Related: RHEL-58775
- ** This tarball is embargoed until 2024-10-15 @ 1pm PT. **

[1:11.0.25.0.8-0.1.ea]
- Update to jdk-11.0.25+8 (EA)
- Update release notes to 11.0.25+8
- Related: RHEL-58775

[1:11.0.25.0.7-0.3.ea]
- RHJDKBP-875 - Added gating.yaml and/or rpminspect.yaml
- RHJDKBP-874 - Removed
- Related: RHEL-58775

[1:11.0.25.0.7-0.2.ea]
- Update to jdk-11.0.25+7 (EA)
- Update release notes to 11.0.25+7
- Related: RHEL-58775

[1:11.0.25.0.6-0.3.ea]
- Limit Java only tests to one 'jdk_test_arch'
- Related: RHEL-58775
- Resolves: RHEL-59730

[1:11.0.25.0.6-0.2.ea]
- Update to jdk-11.0.25+6 (EA)
- Update release notes to 11.0.25+6
- Switch to EA mode
- Bump giflib version to 5.2.2 following JDK-8328999
- Bump libpng version to 1.6.43 following JDK-8329004
- Related: RHEL-58775


_______________________________________________
El-errata mailing list
El-errata@oss.oracle.com
https://oss.oracle.com/mailman/listinfo/el-errata

Oracle9: ELSA-2024-8121: java-11-openjdk Moderate Security Advisory Updates

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

Summary

[1:11.0.25.0.9-2.0.1] - Add Oracle vendor bug URL [Orabug: 34340155] [1:11.0.25.0.9-2] - Update to jdk-11.0.25+9 (GA) - Update release notes to 11.0.25+9 - Switch to GA mode for release - Related: RHEL-58775 - ** This tarball is embargoed until 2024-10-15 @ 1pm PT. ** [1:11.0.25.0.8-0.1.ea] - Update to jdk-11.0.25+8 (EA) - Update release notes to 11.0.25+8 - Related: RHEL-58775 [1:11.0.25.0.7-0.3.ea] - RHJDKBP-875 - Added gating.yaml and/or rpminspect.yaml - RHJDKBP-874 - Removed - Related: RHEL-58775 [1:11.0.25.0.7-0.2.ea] - Update to jdk-11.0.25+7 (EA) - Update release notes to 11.0.25+7 - Related: RHEL-58775 [1:11.0.25.0.6-0.3.ea] - Limit Java only tests to one 'jdk_test_arch' - Related: RHEL-58775 - Resolves: RHEL-59730 [1:11.0.25.0.6-0.2.ea] - Update to jdk-11.0.25+6 (EA) - Update release notes to 11.0.25+6 - Switch to EA mode - Bump giflib version to 5.2.2 following JDK-8328999 - Bump libpng version to 1.6.43 following JDK-8329004 - Related: RHEL-58775

SRPMs

http://oss.oracle.com/ol9/SRPMS-updates//java-11-openjdk-11.0.25.0.9-2.0.1.el9.src.rpm

x86_64

java-11-openjdk-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-demo-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-devel-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-headless-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-javadoc-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-javadoc-zip-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-jmods-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-src-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-static-libs-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-demo-fastdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-demo-slowdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-devel-fastdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-devel-slowdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-fastdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-headless-fastdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-headless-slowdebug-11.0.25.0.9-2.0.1.el9.x86_64.rpm java-11-openjdk-jmods-fastdebug-11.0.25.0...

Read the Full Advisory

aarch64

java-11-openjdk-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-demo-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-devel-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-headless-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-javadoc-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-javadoc-zip-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-jmods-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-src-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-static-libs-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-demo-fastdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-demo-slowdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-devel-fastdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-devel-slowdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-fastdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-headless-fastdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-headless-slowdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-jmods-fastdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-jmods-slowdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-slowdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-src-fastdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-src-slowdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-static-libs-fastdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm java-11-openjdk-static-libs-slowdebug-11.0.25.0.9-2.0.1.el9.aarch64.rpm

i386

Severity
Related CVEs: CVE-2023-48161 CVE-2024-21208 CVE-2024-21210 CVE-2024-21217 CVE-2024-21235

Related News