[El-errata] ELSA-2022-5696 Important: Oracle Linux 8 java-1.8.0-openjdk security, bug fix, and enhancement update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Jul 26 04:05:11 UTC 2022


Oracle Linux Security Advisory ELSA-2022-5696

http://linux.oracle.com/errata/ELSA-2022-5696.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
java-1.8.0-openjdk-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-accessibility-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-demo-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-devel-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-headless-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-javadoc-1.8.0.342.b07-2.el8_6.noarch.rpm
java-1.8.0-openjdk-javadoc-zip-1.8.0.342.b07-2.el8_6.noarch.rpm
java-1.8.0-openjdk-src-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-accessibility-fastdebug-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-accessibility-slowdebug-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-demo-fastdebug-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-demo-slowdebug-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-devel-fastdebug-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-devel-slowdebug-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-fastdebug-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-headless-fastdebug-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-headless-slowdebug-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-slowdebug-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-src-fastdebug-1.8.0.342.b07-2.el8_6.x86_64.rpm
java-1.8.0-openjdk-src-slowdebug-1.8.0.342.b07-2.el8_6.x86_64.rpm

aarch64:
java-1.8.0-openjdk-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-accessibility-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-demo-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-devel-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-headless-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-javadoc-1.8.0.342.b07-2.el8_6.noarch.rpm
java-1.8.0-openjdk-javadoc-zip-1.8.0.342.b07-2.el8_6.noarch.rpm
java-1.8.0-openjdk-src-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-accessibility-fastdebug-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-accessibility-slowdebug-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-demo-fastdebug-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-demo-slowdebug-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-devel-fastdebug-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-devel-slowdebug-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-fastdebug-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-headless-fastdebug-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-headless-slowdebug-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-slowdebug-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-src-fastdebug-1.8.0.342.b07-2.el8_6.aarch64.rpm
java-1.8.0-openjdk-src-slowdebug-1.8.0.342.b07-2.el8_6.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/java-1.8.0-openjdk-1.8.0.342.b07-2.el8_6.src.rpm

Related CVEs:

CVE-2022-21540
CVE-2022-21541
CVE-2022-34169




Description of changes:

[1:1.8.0.342.b07-1]
- Update to shenandoah-jdk8u342-b07
- Update release notes for shenandoah-8u342-b07.
- Print release file during build, which should now include a correct SOURCE value from .src-rev
- Update tarball script with IcedTea GitHub URL and .src-rev generation
- Use "git apply" with patches in the tarball script to allow binary diffs
- Remove redundant "REPOS" variable from tarball script
- Include script to generate bug list for release notes
- Update tzdata requirement to 2022a to match JDK-8283350
- Rebase FIPS patches from fips branch and simplify by using a single patch from that repository
- * RH2036462: sun.security.pkcs11.wrapper.PKCS11.getInstance breakage
- * RH2090378: Revert to disabling system security properties and FIPS mode support together
- Rebase RH1648249 nss.cfg patch so it applies after the FIPS patch
- Perform configuration changes (e.g. nss.cfg, nss.fips.cfg, tzdb.dat) in installjdk
- Enable system security properties in the RPM (now disabled by default in the FIPS repo)
- Improve security properties test to check both enabled and disabled behaviour
- Run security properties test with property debugging on
- Explicitly require crypto-policies during build and runtime for system security properties
- Resolves: rhbz#2099911
- Resolves: rhbz#2108564
- Resolves: rhbz#2084648
- Resolves: rhbz#2106506




More information about the El-errata mailing list