Oval Definition:oval:org.opensuse.security:def:50636
Revision Date:2020-12-01Version:1
Title:Security update for java-11-openjdk (Important)
Description:

This update for java-11-openjdk to version jdk-11.0.4+11 fixes the following issues:

Security issues fixed:

- CVE-2019-2745: Improved ECC Implementation (bsc#1141784). - CVE-2019-2762: Exceptional throw cases (bsc#1141782). - CVE-2019-2766: Improve file protocol handling (bsc#1141789). - CVE-2019-2769: Better copies of CopiesList (bsc#1141783). - CVE-2019-2786: More limited privilege usage (bsc#1141787). - CVE-2019-7317: Improve PNG support options (bsc#1141780). - CVE-2019-2818: Better Poly1305 support (bsc#1141788). - CVE-2019-2816: Normalize normalization (bsc#1141785). - CVE-2019-2821: Improve TLS negotiation (bsc#1141781). - Certificate validation improvements

Non-security issues fixed:

- Do not fail installation when the manpages are not present (bsc#1115375) - Backport upstream fix for JDK-8208602: Cannot read PEM X.509 cert if there is whitespace after the header or footer (bsc#1140461)
Family:unixClass:patch
Status:Reference(s):1027282
1029377
1029902
1040164
1042670
1070853
1079761
1081750
1083507
1086001
1088004
1088009
1088573
1094814
1099358
1107030
1109663
1109847
1115375
1120644
1122191
1122293
1122299
1124729
1124734
1126284
1128378
1129124
1129346
1130840
1133452
1136440
1137942
1138459
1140461
1140844
1141132
1141267
1141780
1141781
1141782
1141783
1141784
1141785
1141787
1141788
1141789
1141853
1142988
1144059
1144363
1144902
1148539
1149121
1149792
1149955
1150114
1151488
1151490
1152143
1152990
1152992
1152994
1152995
1153238
1154092
1154289
1154598
1159035
1159352
1159622
1159812
1162396
1164804
1171252
1171254
1173477
1174117
1174121
1175223
1175568
637176
658604
673071
709442
743787
747125
751718
754447
754677
787526
809831
831629
834601
871152
885662
885882
917607
942751
951166
983582
984751
985177
985348
989523
CVE-2011-3389
CVE-2011-4944
CVE-2012-0845
CVE-2012-1150
CVE-2012-6708
CVE-2013-1752
CVE-2013-4238
CVE-2014-2667
CVE-2014-4650
CVE-2015-9251
CVE-2016-0772
CVE-2016-1000110
CVE-2016-5636
CVE-2016-5699
CVE-2017-18207
CVE-2017-18922
CVE-2018-1000802
CVE-2018-1060
CVE-2018-1061
CVE-2018-11212
CVE-2018-14647
CVE-2018-20406
CVE-2018-20852
CVE-2019-0816
CVE-2019-10160
CVE-2019-10197
CVE-2019-10218
CVE-2019-13508
CVE-2019-14833
CVE-2019-14847
CVE-2019-15845
CVE-2019-15903
CVE-2019-16056
CVE-2019-16167
CVE-2019-16201
CVE-2019-16254
CVE-2019-16255
CVE-2019-16775
CVE-2019-16776
CVE-2019-16777
CVE-2019-16935
CVE-2019-2422
CVE-2019-2745
CVE-2019-2762
CVE-2019-2766
CVE-2019-2769
CVE-2019-2786
CVE-2019-2816
CVE-2019-2818
CVE-2019-2821
CVE-2019-5010
CVE-2019-6974
CVE-2019-7221
CVE-2019-7317
CVE-2019-8912
CVE-2019-9213
CVE-2019-9636
CVE-2019-9947
CVE-2020-12653
CVE-2020-12654
CVE-2020-13934
CVE-2020-13935
CVE-2020-7068
CVE-2020-8027
CVE-2020-8130
SUSE-SU-2019:0574-1
SUSE-SU-2019:2002-1
SUSE-SU-2019:2749-1
SUSE-SU-2019:2866-1
SUSE-SU-2019:3096-1
SUSE-SU-2020:0104-1
SUSE-SU-2020:0114-1
SUSE-SU-2020:0737-1
SUSE-SU-2020:1417-2
SUSE-SU-2020:2047-1
SUSE-SU-2020:2456-1
Platform(s):SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Module for additional PackageHub packages 15 SP2
SUSE Linux Enterprise Module for Basesystem 15 SP1
SUSE Linux Enterprise Module for Legacy Software 15
SUSE Linux Enterprise Module for Live Patching 15
SUSE Linux Enterprise Module for Live Patching 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
SUSE Linux Enterprise Module for Server Applications 15 SP1
SUSE Linux Enterprise Module for Web Scripting 15 SP1
SUSE Linux Enterprise Module for Web Scripting 15 SP2
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 15-LTSS
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Workstation Extension 15
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • wpa_supplicant-0.7.1-6.15 is installed
  • OR wpa_supplicant-gui-0.7.1-6.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • MozillaFirefox-38.7.0esr-37 is installed
  • OR MozillaFirefox-translations-38.7.0esr-37 is installed
  • OR libfreebl3-3.20.2-28 is installed
  • OR libfreebl3-32bit-3.20.2-28 is installed
  • OR libsoftokn3-3.20.2-28 is installed
  • OR libsoftokn3-32bit-3.20.2-28 is installed
  • OR mozilla-nspr-4.12-24 is installed
  • OR mozilla-nspr-32bit-4.12-24 is installed
  • OR mozilla-nss-3.20.2-28 is installed
  • OR mozilla-nss-32bit-3.20.2-28 is installed
  • OR mozilla-nss-tools-3.20.2-28 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • empathy-3.10.3-1 is installed
  • OR empathy-lang-3.10.3-1 is installed
  • OR telepathy-mission-control-plugin-goa-3.10.3-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • gd-2.1.0-5 is installed
  • OR gd-32bit-2.1.0-5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND cifs-utils-6.5-8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • libvorbis0-1.3.3-8 is installed
  • OR libvorbis0-32bit-1.3.3-8 is installed
  • OR libvorbisenc2-1.3.3-8 is installed
  • OR libvorbisenc2-32bit-1.3.3-8 is installed
  • OR libvorbisfile3-1.3.3-8 is installed
  • OR libvorbisfile3-32bit-1.3.3-8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND fetchmail-6.3.26-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 SP2 is installed
  • AND Package Information
  • freetds-1.1.36-3.3 is installed
  • OR libsybdb5-1.1.36-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND Package Information
  • java-11-openjdk-11.0.4.0-3.33 is installed
  • OR java-11-openjdk-demo-11.0.4.0-3.33 is installed
  • OR java-11-openjdk-devel-11.0.4.0-3.33 is installed
  • OR java-11-openjdk-headless-11.0.4.0-3.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 15 is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.201-3.16 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.201-3.16 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.201-3.16 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.201-3.16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-25_19-default-5-2 is installed
  • OR kernel-livepatch-SLE15_Update_5-5-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-195-default-11-31 is installed
  • OR kernel-livepatch-SLE15-SP1_Update_0-11-31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND Package Information
  • ctdb-pcp-pmda-4.9.5+git.187.71edee57d5a-3.9 is installed
  • OR ctdb-tests-4.9.5+git.187.71edee57d5a-3.9 is installed
  • OR libdcerpc-samr0-32bit-4.9.5+git.187.71edee57d5a-3.9 is installed
  • OR libsamba-policy-python-devel-4.9.5+git.187.71edee57d5a-3.9 is installed
  • OR libsamba-policy0-32bit-4.9.5+git.187.71edee57d5a-3.9 is installed
  • OR libsamba-policy0-python3-32bit-4.9.5+git.187.71edee57d5a-3.9 is installed
  • OR libsmbclient0-32bit-4.9.5+git.187.71edee57d5a-3.9 is installed
  • OR samba-4.9.5+git.187.71edee57d5a-3.9 is installed
  • OR samba-ad-dc-32bit-4.9.5+git.187.71edee57d5a-3.9 is installed
  • OR samba-ceph-4.9.5+git.187.71edee57d5a-3.9 is installed
  • OR samba-client-32bit-4.9.5+git.187.71edee57d5a-3.9 is installed
  • OR samba-doc-4.9.5+git.187.71edee57d5a-3.9 is installed
  • OR samba-libs-python-32bit-4.9.5+git.187.71edee57d5a-3.9 is installed
  • OR samba-libs-python3-32bit-4.9.5+git.187.71edee57d5a-3.9 is installed
  • OR samba-test-4.9.5+git.187.71edee57d5a-3.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND Package Information
  • sysstat-12.0.2-3.15 is installed
  • OR sysstat-isag-12.0.2-3.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 SP1 is installed
  • AND Package Information
  • nodejs10-10.18.0-1.15 is installed
  • OR nodejs10-devel-10.18.0-1.15 is installed
  • OR nodejs10-docs-10.18.0-1.15 is installed
  • OR npm10-10.18.0-1.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 SP2 is installed
  • AND Package Information
  • tomcat-9.0.36-3.6 is installed
  • OR tomcat-admin-webapps-9.0.36-3.6 is installed
  • OR tomcat-el-3_0-api-9.0.36-3.6 is installed
  • OR tomcat-jsp-2_3-api-9.0.36-3.6 is installed
  • OR tomcat-lib-9.0.36-3.6 is installed
  • OR tomcat-servlet-4_0-api-9.0.36-3.6 is installed
  • OR tomcat-webapps-9.0.36-3.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • cups-filters-1.0.58-8 is installed
  • OR cups-filters-cups-browsed-1.0.58-8 is installed
  • OR cups-filters-foomatic-rip-1.0.58-8 is installed
  • OR cups-filters-ghostscript-1.0.58-8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • evince-3.10.3-2.3 is installed
  • OR evince-lang-3.10.3-2.3 is installed
  • OR libevdocument3-4-3.10.3-2.3 is installed
  • OR libevview3-3-3.10.3-2.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND gd-2.1.0-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • apache2-2.4.23-29.27 is installed
  • OR apache2-doc-2.4.23-29.27 is installed
  • OR apache2-example-pages-2.4.23-29.27 is installed
  • OR apache2-prefork-2.4.23-29.27 is installed
  • OR apache2-utils-2.4.23-29.27 is installed
  • OR apache2-worker-2.4.23-29.27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • glibc-2.22-62.13 is installed
  • OR glibc-32bit-2.22-62.13 is installed
  • OR glibc-devel-2.22-62.13 is installed
  • OR glibc-devel-32bit-2.22-62.13 is installed
  • OR glibc-html-2.22-62.13 is installed
  • OR glibc-i18ndata-2.22-62.13 is installed
  • OR glibc-info-2.22-62.13 is installed
  • OR glibc-locale-2.22-62.13 is installed
  • OR glibc-locale-32bit-2.22-62.13 is installed
  • OR glibc-profile-2.22-62.13 is installed
  • OR glibc-profile-32bit-2.22-62.13 is installed
  • OR nscd-2.22-62.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_74-92_32-default-10-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_11-10-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND autofs-5.0.9-27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND ucode-intel-20191112a-13.56 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • libseccomp-2.4.1-11.3 is installed
  • OR libseccomp2-2.4.1-11.3 is installed
  • OR libseccomp2-32bit-2.4.1-11.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • exempi-2.2.1-5.7 is installed
  • OR libexempi3-2.2.1-5.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • freeradius-server-3.0.15-2.8 is installed
  • OR freeradius-server-doc-3.0.15-2.8 is installed
  • OR freeradius-server-krb5-3.0.15-2.8 is installed
  • OR freeradius-server-ldap-3.0.15-2.8 is installed
  • OR freeradius-server-libs-3.0.15-2.8 is installed
  • OR freeradius-server-mysql-3.0.15-2.8 is installed
  • OR freeradius-server-perl-3.0.15-2.8 is installed
  • OR freeradius-server-postgresql-3.0.15-2.8 is installed
  • OR freeradius-server-python-3.0.15-2.8 is installed
  • OR freeradius-server-sqlite-3.0.15-2.8 is installed
  • OR freeradius-server-utils-3.0.15-2.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND Package Information
  • rpmlint-1.10-7.12 is installed
  • OR rpmlint-mini-1.10-5.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND Package Information
  • libmariadb-devel-3.1.8-3.18 is installed
  • OR libmariadb3-3.1.8-3.18 is installed
  • OR libmariadb_plugins-3.1.8-3.18 is installed
  • OR libmariadbprivate-3.1.8-3.18 is installed
  • OR mariadb-connector-c-3.1.8-3.18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 is installed
  • AND Package Information
  • MozillaThunderbird-60.7.0-3.36 is installed
  • OR MozillaThunderbird-translations-common-60.7.0-3.36 is installed
  • OR MozillaThunderbird-translations-other-60.7.0-3.36 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.151-27.8 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.151-27.8 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.151-27.8 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.151-27.8 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • ntp-4.2.8p11-64.5 is installed
  • OR ntp-doc-4.2.8p11-64.5 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND log4j-1.2.15-126.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • java-1_8_0-ibm-1.8.0_sr5.40-30.54 is installed
  • OR java-1_8_0-ibm-alsa-1.8.0_sr5.40-30.54 is installed
  • OR java-1_8_0-ibm-plugin-1.8.0_sr5.40-30.54 is installed
  • BACK