{"cves":["CVE-2022-21540","CVE-2022-34169","CVE-2022-21541"],"cvss":0.0,"database_specific":{"severity":"IMPORTANT"},"description":"[1:11.0.16.0.8-1.0.1]\n- link atomic for ix86 build\n\n[1:11.0.16.0.8-1]\n- Update to jdk-11.0.16+8\n- Update release notes to 11.0.16+8\n- Use same tarball naming style as java-17-openjdk and java-latest-openjdk\n- Drop JDK-8284920 patch now upstreamed\n- Print release file during build, which should now include a correct SOURCE value from .src-rev\n- Update tarball script with IcedTea GitHub URL and .src-rev generation\n- Use 'git apply' with patches in the tarball script to allow binary diffs\n- Include script to generate bug list for release notes\n- Update tzdata requirement to 2022a to match JDK-8283350\n- Make use of the vendor version string to store our version  release rather than an upstream release date\n- Explicitly require crypto-policies during build and runtime for system security properties\n- Resolves: rhbz#2106510\n\n[1:11.0.16.0.8-1]\n- Add additional patch during tarball generation to align tests with ECC changes\n- Related: rhbz#2106510","id":"ELSA-2022-5687","ovalId":"oval:com.oracle.elsa:def:20225687","source":"oracle_linux","title":"ELSA-2022-5687:  java-11-openjdk security, bug fix, and enhancement update (IMPORTANT)","url":"https://linux.oracle.com/errata/ELSA-2022-5687.html"}