elsa-2026-9682

oracle_linux
Description

[1.8.0.492.b09-1.0.1] - Update to 8u492-b09 (GA) [Orabug: 39247147][CVE-2026-22007][CVE-2026-22013] [CVE-2026-22016][CVE-2026-22018][CVE-2026-22021][CVE-2026-23865][CVE-2026-34268] [1.8.0.482.b08-1.0.1] - Update to 8u482-b08 (GA). [Orabug: 38893614] - Update release notes for 8u482-b08. - Resolves: RHEL-142689 - Resolves: RHEL-139521 - Resolves: RHEL-131446 - Resolves: RHEL-131459 - Resolves: RHEL-142865 - Resolves: RHEL-142696 - Fixes CVE-2026-21925 CVE-2026-21933 CVE-2026-21945 [1.8.0.472.b08-1.0.1] - Update to 8u472-b08 (GA) [Orabug: 38571645] - Update release notes for 8u472-b08. - Drop local JDK-8339414 fix as this is now included upstream - Reset rpmrelease to 1 now there are no other RPM builds on RHEL 8 - Sync the copy of the portable specfile with the latest update - ** This tarball is embargoed until 2025-10-21 @ 1pm PT. ** - Resolves: RHEL-118769 - Resolves: RHEL-119444 - Fixes CVE-2025-53057 CVE-2025-53066 [1:1.8.0.462.b08-1.0.1] - Update to 8u462-b08 (GA) [Orabug: 38248370] - Update release notes for 8u462-b08. - Require tzdata 2025b due to upstream inclusion of JDK-8352716 - Add early backport of JDK-8339414 - Sync the copy of the portable specfile with the latest update - ** This tarball is embargoed until 2025-07-15 @ 1pm PT. ** - Resolves: RHEL-101654 - Resolves: RHEL-102307 - Resolves: RHEL-102907 [1.8.0.452.b09-1.0.1] - Update to 8u452-b09 (GA) [Orabug: 38144314] - Update release notes for 8u452-b09. - Remove long option documentation from JDK-8335912/JDK-8337499 as not present in 8u - Require tzdata 2025a due to upstream inclusion of JDK-8347965 - ** This tarball is embargoed until 2025-04-15 @ 1pm PT. ** - Resolves: RHEL-86973 - Resolves: RHEL-86616 [1:1.8.0.442.b06-1.0.3] - Fixed CVE-2025-21587, CVE-2025-30691 and CVE-2025-30698 [Orabug: 37840723] [1:1.8.0.442.b06-1.0.1] - Update to 8u442-b06 (GA) [Orabug: 37506184] - Update release notes for 8u442-b06. - Add a simple -version check on both the JDK and JRE bin/java

Timeline
Published
unknown
Last Modified
unknown
CVSS Details

CVSS details not available.

Affected Products

No product information available.

References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "cves": [
    "CVE-2026-22007",
    "CVE-2026-22013",
    "CVE-2026-22016",
    "CVE-2026-22018",
    "CVE-2026-22021",
    "CVE-2026-23865",
    "CVE-2026-34268"
  ],
  "cvss": 0.0,
  "database_specific": {
    "severity": "IMPORTANT"
  },
  "description": "[1.8.0.492.b09-1.0.1]\n- Update to 8u492-b09 (GA) [Orabug: 39247147][CVE-2026-22007][CVE-2026-22013]\n  [CVE-2026-22016][CVE-2026-22018][CVE-2026-22021][CVE-2026-23865][CVE-2026-34268]\n\n[1.8.0.482.b08-1.0.1]\n- Update to 8u482-b08 (GA). [Orabug: 38893614]\n- Update release notes for 8u482-b08.\n- Resolves: RHEL-142689\n- Resolves: RHEL-139521\n- Resolves: RHEL-131446\n- Resolves: RHEL-131459\n- Resolves: RHEL-142865\n- Resolves: RHEL-142696\n- Fixes CVE-2026-21925 CVE-2026-21933 CVE-2026-21945\n\n[1.8.0.472.b08-1.0.1]\n- Update to 8u472-b08 (GA) [Orabug: 38571645]\n- Update release notes for 8u472-b08.\n- Drop local JDK-8339414 fix as this is now included upstream\n- Reset rpmrelease to 1 now there are no other RPM builds on RHEL 8\n- Sync the copy of the portable specfile with the latest update\n- ** This tarball is embargoed until 2025-10-21 @ 1pm PT. **\n- Resolves: RHEL-118769\n- Resolves: RHEL-119444\n- Fixes CVE-2025-53057 CVE-2025-53066\n\n[1:1.8.0.462.b08-1.0.1]\n- Update to 8u462-b08 (GA) [Orabug: 38248370]\n- Update release notes for 8u462-b08.\n- Require tzdata 2025b due to upstream inclusion of JDK-8352716\n- Add early backport of JDK-8339414\n- Sync the copy of the portable specfile with the latest update\n- ** This tarball is embargoed until 2025-07-15 @ 1pm PT. **\n- Resolves: RHEL-101654\n- Resolves: RHEL-102307\n- Resolves: RHEL-102907\n\n[1.8.0.452.b09-1.0.1]\n- Update to 8u452-b09 (GA) \t[Orabug: 38144314]\n- Update release notes for 8u452-b09.\n- Remove long option documentation from JDK-8335912/JDK-8337499 as not present in 8u\n- Require tzdata 2025a due to upstream inclusion of JDK-8347965\n- ** This tarball is embargoed until 2025-04-15 @ 1pm PT. **\n- Resolves: RHEL-86973\n- Resolves: RHEL-86616\n\n[1:1.8.0.442.b06-1.0.3]\n- Fixed CVE-2025-21587, CVE-2025-30691  and CVE-2025-30698 [Orabug: 37840723]\n\n[1:1.8.0.442.b06-1.0.1]\n- Update to 8u442-b06 (GA) [Orabug: 37506184]\n- Update release notes for 8u442-b06.\n- Add a simple -version check on both the JDK and JRE bin/java",
  "id": "ELSA-2026-9682",
  "ovalId": "oval:com.oracle.elsa:def:20269682",
  "source": "oracle_linux",
  "title": "ELSA-2026-9682:  java-1.8.0-openjdk security update (IMPORTANT)",
  "url": "https://linux.oracle.com/errata/ELSA-2026-9682.html"
}
View JSON API Download JSON