elsa-2022-5709

oracle_linux
Description

[1.8.0.342.b07-1.0.1] - Replace upstream references [Orabug: 34340145] [1:1.8.0.342.b07-1] - Update to shenandoah-jdk8u342-b07 - Update release notes for shenandoah-8u342-b07. - Print release file during build, which should now include a correct SOURCE value from .src-rev - Update tarball script with IcedTea GitHub URL and .src-rev generation - Use 'git apply' with patches in the tarball script to allow binary diffs - Remove redundant 'REPOS' variable from tarball script - Include script to generate bug list for release notes - Update tzdata requirement to 2022a to match JDK-8283350 - Rebase FIPS patches from fips branch and simplify by using a single patch from that repository - * RH2036462: sun.security.pkcs11.wrapper.PKCS11.getInstance breakage - * RH2090378: Revert to disabling system security properties and FIPS mode support together - Rebase RH1648249 nss.cfg patch so it applies after the FIPS patch - Perform configuration changes (e.g. nss.cfg, nss.fips.cfg, tzdb.dat) in installjdk - Enable system security properties in the RPM (now disabled by default in the FIPS repo) - Improve security properties test to check both enabled and disabled behaviour - Run security properties test with property debugging on - Explicitly require crypto-policies during build and runtime for system security properties - Resolves: rhbz#2099916 - Resolves: rhbz#2107958 - Resolves: rhbz#2084776 - Resolves: rhbz#2106508 [1:1.8.0.332.b09-2] - RH2007331: SecretKey generate/import operations don't add the CKA_SIGN attribute in FIPS mode - Resolves: rhbz#2107956

Timeline
Published
unknown
Last Modified
unknown
CVSS Details

CVSS details not available.

Affected Products

No product information available.

References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "cves": [
    "CVE-2022-21541",
    "CVE-2022-21540",
    "CVE-2022-34169"
  ],
  "cvss": 0.0,
  "database_specific": {
    "severity": "IMPORTANT"
  },
  "description": "[1.8.0.342.b07-1.0.1]\n- Replace upstream references [Orabug: 34340145]\n\n[1:1.8.0.342.b07-1]\n- Update to shenandoah-jdk8u342-b07\n- Update release notes for shenandoah-8u342-b07.\n- Print release file during build, which should now include a correct SOURCE value from .src-rev\n- Update tarball script with IcedTea GitHub URL and .src-rev generation\n- Use 'git apply' with patches in the tarball script to allow binary diffs\n- Remove redundant 'REPOS' variable from tarball script\n- Include script to generate bug list for release notes\n- Update tzdata requirement to 2022a to match JDK-8283350\n- Rebase FIPS patches from fips branch and simplify by using a single patch from that repository\n- * RH2036462: sun.security.pkcs11.wrapper.PKCS11.getInstance breakage\n- * RH2090378: Revert to disabling system security properties and FIPS mode support together\n- Rebase RH1648249 nss.cfg patch so it applies after the FIPS patch\n- Perform configuration changes (e.g. nss.cfg, nss.fips.cfg, tzdb.dat) in installjdk\n- Enable system security properties in the RPM (now disabled by default in the FIPS repo)\n- Improve security properties test to check both enabled and disabled behaviour\n- Run security properties test with property debugging on\n- Explicitly require crypto-policies during build and runtime for system security properties\n- Resolves: rhbz#2099916\n- Resolves: rhbz#2107958\n- Resolves: rhbz#2084776\n- Resolves: rhbz#2106508\n\n[1:1.8.0.332.b09-2]\n- RH2007331: SecretKey generate/import operations don't add the CKA_SIGN attribute in FIPS mode\n- Resolves: rhbz#2107956",
  "id": "ELSA-2022-5709",
  "ovalId": "oval:com.oracle.elsa:def:20225709",
  "source": "oracle_linux",
  "title": "ELSA-2022-5709:  java-1.8.0-openjdk security, bug fix, and enhancement update (IMPORTANT)",
  "url": "https://linux.oracle.com/errata/ELSA-2022-5709.html"
}
View JSON API Download JSON