Release Info

Advisory: CLSA-2024:1730919779

OS: CentOS 8.5 ELS

Public date: 2024-11-06 14:03:01

Project: java-1.8.0-openjdk

Version: 1.8.0.432.b06-1.el8.tuxcare.els1

Errata link: https://errata.tuxcare.com/els_os/centos8.5els/CLSA-2024-1730919779.html

Changelog

- Upgrade to shenandoah-jdk8u432-b06 fixing the following CVEs: - CVE-2024-21208: unauthorized partial DoS vulnerability - CVE-2024-21210: unauthorized update, insert, or delete access to some of data - CVE-2024-21217: unauthorized partial DoS vulnerability - CVE-2024-21235: unauthorized update, insert, delete, or read access to some of data - Update the PR3533 patch

Update

Update command: dnf update java-1.8.0-openjdk*

Packages list

java-1.8.0-openjdk-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-accessibility-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-accessibility-fastdebug-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-accessibility-slowdebug-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-demo-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-demo-fastdebug-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-demo-slowdebug-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-devel-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-devel-fastdebug-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-devel-slowdebug-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-fastdebug-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-headless-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-headless-fastdebug-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-headless-slowdebug-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-javadoc-1.8.0.432.b06-1.el8.tuxcare.els1.noarch.rpm java-1.8.0-openjdk-javadoc-zip-1.8.0.432.b06-1.el8.tuxcare.els1.noarch.rpm java-1.8.0-openjdk-slowdebug-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-src-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-src-fastdebug-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm java-1.8.0-openjdk-src-slowdebug-1.8.0.432.b06-1.el8.tuxcare.els1.x86_64.rpm

CVEs

CVE-2024-21235
CVE-2024-21210
CVE-2024-21208
CVE-2024-21217