[El-errata] ELSA-2025-10867 Important: Oracle Linux 9 java-17-openjdk security update
Errata Announcements for Oracle Linux
el-errata at oss.oracle.com
Thu Jul 17 21:49:17 UTC 2025
Oracle Linux Security Advisory ELSA-2025-10867
http://linux.oracle.com/errata/ELSA-2025-10867.html
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
x86_64:
java-17-openjdk-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-demo-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-demo-fastdebug-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-demo-slowdebug-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-devel-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-devel-fastdebug-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-devel-slowdebug-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-fastdebug-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-headless-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-headless-fastdebug-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-headless-slowdebug-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-javadoc-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-javadoc-zip-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-jmods-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-jmods-fastdebug-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-jmods-slowdebug-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-slowdebug-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-src-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-src-fastdebug-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-src-slowdebug-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-static-libs-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-static-libs-fastdebug-17.0.16.0.8-2.0.1.el9.x86_64.rpm
java-17-openjdk-static-libs-slowdebug-17.0.16.0.8-2.0.1.el9.x86_64.rpm
aarch64:
java-17-openjdk-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-demo-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-demo-fastdebug-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-demo-slowdebug-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-devel-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-devel-fastdebug-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-devel-slowdebug-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-fastdebug-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-headless-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-headless-fastdebug-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-headless-slowdebug-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-javadoc-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-javadoc-zip-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-jmods-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-jmods-fastdebug-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-jmods-slowdebug-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-slowdebug-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-src-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-src-fastdebug-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-src-slowdebug-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-static-libs-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-static-libs-fastdebug-17.0.16.0.8-2.0.1.el9.aarch64.rpm
java-17-openjdk-static-libs-slowdebug-17.0.16.0.8-2.0.1.el9.aarch64.rpm
SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/java-17-openjdk-17.0.16.0.8-2.0.1.el9.src.rpm
Related CVEs:
CVE-2025-30749
CVE-2025-30754
CVE-2025-50059
CVE-2025-50106
Description of changes:
[1:17.0.16.0.8-2.0.1]
- Add Oracle vendor bug URL [Orabug: 34340155]
[1:17.0.16.0.8-2]
- Update to jdk-17.0.16+8
- Add to .gitignore openjdk-17.0.16+8.tar.xz
- Set updatever to 16
- Set buildver to 8
- Set rpmrelease to 2
- Update sources to openjdk-17.0.16+8.tar.xz
- Resolves: RHEL-101788
- Resolves: RHEL-101795
- Resolves: RHEL-101796
- Resolves: RHEL-101797
- Resolves: RHEL-102283
- Resolves: RHEL-102286
- Resolves: RHEL-102285
- Resolves: RHEL-102284
- Require tzdata-java 2025b at runtime and for build
- Set bundled freetype provide version to 2.13.3
- Set bundled harfbuzz provide version to 10.4.0
- Set bundled lcms2 provide version to 2.17.0
- Set bundled libpng provide version to 1.6.47
- Recommend pipewire
- Related: RHEL-102667
- Resolves: RHEL-102669
- Resolves: RHEL-102670
- Resolves: RHEL-102672
- Sync java-17-openjdk-portable.specfile from openjdk-portable-rhel-8
- ** This tarball is embargoed until 2025-07-15 @ 1pm PT. **
More information about the El-errata
mailing list