Oval Definition:oval:org.opensuse.security:def:119472
Revision Date:2022-08-19Version:1
Title:Security update for java-1_8_0-openjdk (Important)
Description:

This update for java-1_8_0-openjdk fixes the following issues:

- Updated to version jdk8u345 (icedtea-3.24.0) - CVE-2022-21540: Fixed a potential Java sandbox bypass (bsc#1201694). - CVE-2022-21541: Fixed a potential Java sandbox bypass (bsc#1201692). - CVE-2022-34169: Fixed an issue where arbitrary bytecode could be executed via a malicious stylesheet (bsc#1201684).

- Non-security fixes: - Allowed for customization of PKCS12 keystores (bsc#1195163).
Family:unixClass:patch
Status:Reference(s):1195163
1201684
1201692
1201694
CVE-2022-21540
CVE-2022-21541
CVE-2022-34169
SUSE-SU-2022:2856-1
Platform(s):SUSE Linux Enterprise Server 15 SP2-LTSS
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server 15 SP2-LTSS is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.345-150000.3.70.1 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.345-150000.3.70.1 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.345-150000.3.70.1 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.345-150000.3.70.1 is installed
  • BACK