You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa java-1.8.0-openjdk

Sigurnosni nedostaci programskog paketa java-1.8.0-openjdk

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2020-21ca991b3b
2020-05-13 03:36:19.766553
——————————————————————————–

Name : java-1.8.0-openjdk
Product : Fedora 30
Version : 1.8.0.252.b09
Release : 0.fc30
URL : http://openjdk.java.net/
Summary : OpenJDK Runtime Environment 8
Description :
The OpenJDK runtime environment 8.

——————————————————————————–
Update Information:

Update to OpenJDK 8u252 (April Critical Patch Update) – JDK-8223898,
CVE-2020-2754: Forward references to Nashorn – JDK-8223904, CVE-2020-2755:
Improve Nashorn matching – JDK-8224541, CVE-2020-2756: Better mapping of serial
ENUMs – JDK-8224549, CVE-2020-2757: Less Blocking Array Queues – JDK-8225603:
Enhancement for big integers – JDK-8227542: Manifest improved jar headers –
JDK-8231415, CVE-2020-2773: Better signatures in XML – JDK-8233250: Better X11
rendering – JDK-8233410: Better Build Scripting – JDK-8234027: Better JCEKS
key support – JDK-8234408, CVE-2020-2781: Improve TLS session handling –
JDK-8234825, CVE-2020-2800: Better Headings for HTTP Servers – JDK-8234841,
CVE-2020-2803: Enhance buffering of byte buffers – JDK-8235274, CVE-2020-2805:
Enhance typing of methods – JDK-8236201, CVE-2020-2830: Better Scanner
conversions – JDK-8238960: linux-i586 builds are inconsistent as the newly
build jdk is not able to reserve enough space for object heap Full release
notes: https://bitly.com/oj8u252
——————————————————————————–
ChangeLog:

* Sun May 3 2020 Andrew John Hughes <gnu.andrew@redhat.com> – 1:1.8.0.252.b09-0
– Update to aarch64-shenandoah-jdk8u242-b09.
– Switch to GA mode for final release.
– Add release notes.
– Adjust PR2974/RH1337583 & PR3083/RH1346460 following context changes in JDK-8230978
* Sun May 3 2020 Andrew Hughes <gnu.andrew@redhat.com> – 1:1.8.0.252.b01-0.1.ea
– Update to aarch64-shenandoah-jdk8u252-b01.
– Switch to EA mode.
– Adjust JDK-8199936/PR3533 patch following JDK-8227397 configure change
– Make use of –with-extra-asflags introduced in jdk8u252-b01.
– Drop obsolete local patch, JDK-8219772, now that ASFLAGS are properly handled.
* Fri Mar 13 2020 Andrew John Hughes <gnu.andrew@redhat.com> – 1:1.8.0.242.b08-1
– Sync SystemTap & desktop files with upstream IcedTea release 3.15.0, removing previous workarounds
——————————————————————————–

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade –advisory FEDORA-2020-21ca991b3b’ at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org

AutorToni Vugdelija
Cert idNCERT-REF-2020-05-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostatak programskog paketa kpatch-patch

Otkriven je sigurnosni nedostatak u programskom paketu kpatch-patch za operacijski sustav RHEL. Otkriveni nedostatak potencijalnim napadačima omogućuje izazivanje DoS stanja....

Close