Oval Definition:oval:org.opensuse.security:def:5451
Revision Date:2020-12-02Version:1
Title:Security update for java-11-openjdk (Important)
Description:

This update for java-11-openjdk fixes the following issues:

Java was updated to jdk-11.0.7+10 (April 2020 CPU, bsc#1169511).

Security issues fixed:

- CVE-2020-2754: Fixed an incorrect handling of regular expressions that could have resulted in denial of service (bsc#1169511). - CVE-2020-2755: Fixed an incorrect handling of regular expressions that could have resulted in denial of service (bsc#1169511). - CVE-2020-2756: Fixed an incorrect handling of regular expressions that could have resulted in denial of service (bsc#1169511). - CVE-2020-2757: Fixed an object deserialization issue that could have resulted in denial of service via crafted serialized input (bsc#1169511). - CVE-2020-2767: Fixed an incorrect handling of certificate messages during TLS handshakes (bsc#1169511). - CVE-2020-2773: Fixed the incorrect handling of exceptions thrown by unmarshalKeyInfo() and unmarshalXMLSignature() (bsc#1169511). - CVE-2020-2778: Fixed the incorrect handling of SSLParameters in setAlgorithmConstraints(), which could have been abused to override the defined systems security policy and lead to the use of weak crypto algorithms (bsc#1169511). - CVE-2020-2781: Fixed the incorrect re-use of single null TLS sessions (bsc#1169511). - CVE-2020-2800: Fixed an HTTP header injection issue caused by mishandling of CR/LF in header values (bsc#1169511). - CVE-2020-2803: Fixed a boundary check and type check issue that could have led to a sandbox bypass (bsc#1169511). - CVE-2020-2805: Fixed a boundary check and type check issue that could have led to a sandbox bypass (bsc#1169511). - CVE-2020-2816: Fixed an incorrect handling of application data packets during TLS handshakes (bsc#1169511). - CVE-2020-2830: Fixed an incorrect handling of regular expressions that could have resulted in denial of service (bsc#1169511).
Family:unixClass:patch
Status:Reference(s):1157465
1159284
1162327
1165572
1167437
1167462
1168340
1169511
1169604
1169800
1170104
1170288
1170595
1171906
1172075
1173072
1174165
CVE-2008-0928
CVE-2008-1945
CVE-2008-2382
CVE-2008-4539
CVE-2009-0186
CVE-2009-0945
CVE-2009-5029
CVE-2010-1205
CVE-2010-3430
CVE-2010-3431
CVE-2010-3853
CVE-2011-1761
CVE-2011-2501
CVE-2011-2696
CVE-2011-3026
CVE-2011-3045
CVE-2011-3048
CVE-2011-3148
CVE-2011-3149
CVE-2011-3193
CVE-2011-3389
CVE-2011-3922
CVE-2011-4944
CVE-2012-0845
CVE-2012-1150
CVE-2012-2141
CVE-2012-3386
CVE-2012-3406
CVE-2012-3515
CVE-2012-4412
CVE-2012-4510
CVE-2012-4929
CVE-2012-6093
CVE-2013-0242
CVE-2013-0254
CVE-2013-1752
CVE-2013-1914
CVE-2013-2002
CVE-2013-2005
CVE-2013-2207
CVE-2013-4148
CVE-2013-4149
CVE-2013-4150
CVE-2013-4151
CVE-2013-4233
CVE-2013-4234
CVE-2013-4237
CVE-2013-4238
CVE-2013-4332
CVE-2013-4458
CVE-2013-4526
CVE-2013-4527
CVE-2013-4529
CVE-2013-4530
CVE-2013-4531
CVE-2013-4533
CVE-2013-4534
CVE-2013-4535
CVE-2013-4536
CVE-2013-4537
CVE-2013-4538
CVE-2013-4539
CVE-2013-4540
CVE-2013-4541
CVE-2013-4542
CVE-2013-4544
CVE-2013-4549
CVE-2013-6399
CVE-2013-7353
CVE-2013-7354
CVE-2013-7423
CVE-2014-0142
CVE-2014-0143
CVE-2014-0144
CVE-2014-0145
CVE-2014-0146
CVE-2014-0147
CVE-2014-0150
CVE-2014-0182
CVE-2014-0190
CVE-2014-0222
CVE-2014-0223
CVE-2014-0475
CVE-2014-2284
CVE-2014-2285
CVE-2014-2583
CVE-2014-2667
CVE-2014-3248
CVE-2014-3461
CVE-2014-3565
CVE-2014-3640
CVE-2014-4043
CVE-2014-4607
CVE-2014-4650
CVE-2014-5119
CVE-2014-6040
CVE-2014-7817
CVE-2014-7840
CVE-2014-8106
CVE-2014-8121
CVE-2014-9402
CVE-2014-9496
CVE-2014-9756
CVE-2014-9761
CVE-2015-0295
CVE-2015-1472
CVE-2015-1473
CVE-2015-1779
CVE-2015-1781
CVE-2015-1858
CVE-2015-1859
CVE-2015-1860
CVE-2015-3209
CVE-2015-3456
CVE-2015-4037
CVE-2015-5154
CVE-2015-5225
CVE-2015-5278
CVE-2015-5279
CVE-2015-5621
CVE-2015-6815
CVE-2015-6855
CVE-2015-7295
CVE-2015-7547
CVE-2015-7805
CVE-2015-8075
CVE-2015-8776
CVE-2015-8777
CVE-2015-8778
CVE-2015-8779
CVE-2016-1234
CVE-2016-3075
CVE-2016-3706
CVE-2016-4429
CVE-2019-18897
CVE-2020-11651
CVE-2020-11652
CVE-2020-2754
CVE-2020-2755
CVE-2020-2756
CVE-2020-2757
CVE-2020-2767
CVE-2020-2773
CVE-2020-2778
CVE-2020-2781
CVE-2020-2800
CVE-2020-2803
CVE-2020-2805
CVE-2020-2816
CVE-2020-2830
SUSE-SU-2020:1511-1
SUSE-SU-2020:1973-1
Platform(s):openSUSE 13.1
openSUSE 13.1 NonFree
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise for SAP 12
SUSE Linux Enterprise for SAP 12 SP1
SUSE Linux Enterprise for SAP 12 SP2
SUSE Linux Enterprise High Performance Computing 12 SP5
SUSE Linux Enterprise Live Patching 12 SP3
SUSE Linux Enterprise Module for Advanced Systems Management 12
SUSE Linux Enterprise Module for Containers 12
SUSE Linux Enterprise Module for Legacy Software 12
SUSE Linux Enterprise Module for Public Cloud 12
SUSE Linux Enterprise Module for Web Scripting 12
SUSE Linux Enterprise Point of Sale 12 SP2
SUSE Linux Enterprise Real Time Extension 12 SP2
SUSE Linux Enterprise Server 11
SUSE Linux Enterprise Server 11 SP1-LTSS
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Server 11 SP2-LTSS
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP3-LTSS
SUSE Linux Enterprise Server 12
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2
SUSE Linux Enterprise Server for SAP Applications 12
SUSE Linux Enterprise Server for SAP Applications 12 SP1
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Software Development Kit 11 SP4
SUSE Linux Enterprise Software Development Kit 12
SUSE Linux Enterprise Software Development Kit 12 SP3
SUSE Linux Enterprise Software Development Kit 12 SP4
SUSE Linux Enterprise Workstation Extension 12
SUSE Linux Enterprise Workstation Extension 12 SP1
SUSE Linux Enterprise Workstation Extension 12 SP2
SUSE OpenStack Cloud 5
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • libpython2_6-1_0-2.6.9-0.25.1 is installed
  • OR libpython2_6-1_0-32bit-2.6.9-0.25.1 is installed
  • OR python-2.6.9-0.25.1 is installed
  • OR python-base-2.6.9-0.25.1 is installed
  • OR python-base-32bit-2.6.9-0.25.1 is installed
  • OR python-curses-2.6.9-0.25.1 is installed
  • OR python-devel-2.6.9-0.25.1 is installed
  • OR python-tk-2.6.9-0.25.1 is installed
  • OR python-xml-2.6.9-0.25.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • libmysql55client18-5.5.47-0.17.1 is installed
  • OR libmysql55client18-32bit-5.5.47-0.17.1 is installed
  • OR libmysql55client_r18-5.5.47-0.17.1 is installed
  • OR libmysql55client_r18-32bit-5.5.47-0.17.1 is installed
  • OR mysql-5.5.47-0.17.1 is installed
  • OR mysql-client-5.5.47-0.17.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • liblzo2-2-2.08-1 is installed
  • OR liblzo2-2-32bit-2.08-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • cups-pk-helper-0.2.5-3 is installed
  • OR cups-pk-helper-lang-0.2.5-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • augeas-1.2.0-15 is installed
  • OR augeas-lenses-1.2.0-15 is installed
  • OR libaugeas0-1.2.0-15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND clamav-0.100.2-33.18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise for SAP 12 is installed
  • AND Package Information
  • MozillaFirefox-45.3.0esr-78.1 is installed
  • OR MozillaFirefox-translations-45.3.0esr-78.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise for SAP 12 SP1 is installed
  • AND clamav-0.99.2-32.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise for SAP 12 SP2 is installed
  • AND cryptctl-1.2.6-5.3.11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Performance Computing 12 SP5 is installed
  • AND Package Information
  • fontconfig-2.11.1-7 is installed
  • OR fontconfig-32bit-2.11.1-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Live Patching 12 SP3 is installed
  • AND Package Information
  • kgraft-patch-4_4_82-6_3-default-1-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_1-1-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Advanced Systems Management 12 is installed
  • AND python-pycrypto-2.6.1-10.3.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Containers 12 is installed
  • AND python-setuptools-1.1.7-7.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 12 is installed
  • AND Package Information
  • cups154-1.5.4-2 is installed
  • OR cups154-client-1.5.4-2 is installed
  • OR cups154-filters-1.5.4-2 is installed
  • OR cups154-libs-1.5.4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Public Cloud 12 is installed
  • AND python-PyYAML-3.10-15.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 12 is installed
  • AND apache2-mod_wsgi-4.4.13-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Point of Sale 12 SP2 is installed
  • AND python-pycrypto-2.6.1-10.3.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Real Time Extension 12 SP2 is installed
  • AND Package Information
  • cluster-md-kmp-rt-4.4.74-7.10.1 is installed
  • OR cluster-network-kmp-rt-4.4.74-7.10.1 is installed
  • OR dlm-kmp-rt-4.4.74-7.10.1 is installed
  • OR gfs2-kmp-rt-4.4.74-7.10.1 is installed
  • OR kernel-devel-rt-4.4.74-7.10.1 is installed
  • OR kernel-rt-4.4.74-7.10.1 is installed
  • OR kernel-rt-base-4.4.74-7.10.1 is installed
  • OR kernel-rt-devel-4.4.74-7.10.1 is installed
  • OR kernel-rt_debug-4.4.74-7.10.1 is installed
  • OR kernel-rt_debug-devel-4.4.74-7.10.1 is installed
  • OR kernel-source-rt-4.4.74-7.10.1 is installed
  • OR kernel-syms-rt-4.4.74-7.10.1 is installed
  • OR ocfs2-kmp-rt-4.4.74-7.10.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 is installed
  • AND Package Information
  • mozilla-xulrunner191-1.9.1.15-0.5.1 is installed
  • OR mozilla-xulrunner191-32bit-1.9.1.15-0.5.1 is installed
  • OR mozilla-xulrunner191-gnomevfs-1.9.1.15-0.5.1 is installed
  • OR mozilla-xulrunner191-translations-1.9.1.15-0.5.1 is installed
  • OR mozilla-xulrunner191-x86-1.9.1.15-0.5.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP1-LTSS is installed
  • AND Package Information
  • gpg2-2.0.9-25.33.37.6 is installed
  • OR gpg2-lang-2.0.9-25.33.37.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP2 is installed
  • AND Package Information
  • g3utils-1.1.36-26.31 is installed
  • OR mgetty-1.1.36-26.31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND Package Information
  • NetworkManager-0.7.1_git20090811-3.28.2 is installed
  • OR NetworkManager-glib-0.7.1_git20090811-3.28.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 is installed
  • AND Package Information
  • alsa-1.0.27.2-11 is installed
  • OR alsa-docs-1.0.27.2-11 is installed
  • OR libasound2-1.0.27.2-11 is installed
  • OR libasound2-32bit-1.0.27.2-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • MozillaFirefox-38.4.0esr-51 is installed
  • OR MozillaFirefox-translations-38.4.0esr-51 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND sudo-1.8.10p3-8.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libssh2-1-1.4.3-19 is installed
  • OR libssh2-1-32bit-1.4.3-19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND SuSEfirewall2-3.6.312.333-3.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 is installed
  • AND Package Information
  • gnome-settings-daemon-3.20.1-40 is installed
  • OR gnome-settings-daemon-lang-3.20.1-40 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 is installed
  • AND Package Information
  • kernel-default-3.12.61-52.72 is installed
  • OR kernel-default-base-3.12.61-52.72 is installed
  • OR kernel-default-devel-3.12.61-52.72 is installed
  • OR kernel-devel-3.12.61-52.72 is installed
  • OR kernel-macros-3.12.61-52.72 is installed
  • OR kernel-source-3.12.61-52.72 is installed
  • OR kernel-syms-3.12.61-52.72 is installed
  • OR kernel-xen-3.12.61-52.72 is installed
  • OR kernel-xen-base-3.12.61-52.72 is installed
  • OR kernel-xen-devel-3.12.61-52.72 is installed
  • OR kgraft-patch-3_12_61-52_72-default-1-2 is installed
  • OR kgraft-patch-3_12_61-52_72-xen-1-2 is installed
  • OR kgraft-patch-SLE12_Update_21-1-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 SP1 is installed
  • AND Package Information
  • kgraft-patch-3_12_74-60_64_48-default-2-2 is installed
  • OR kgraft-patch-3_12_74-60_64_48-xen-2-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_17-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND Package Information
  • java-11-openjdk-11.0.7.0-3.42 is installed
  • OR java-11-openjdk-demo-11.0.7.0-3.42 is installed
  • OR java-11-openjdk-devel-11.0.7.0-3.42 is installed
  • OR java-11-openjdk-headless-11.0.7.0-3.42 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND NetworkManager-devel-0.7.1_git20090811-3.28.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 is installed
  • AND cyrus-sasl-devel-2.1.26-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 SP3 is installed
  • AND Package Information
  • libguestfs-devel-1.32.4-19 is installed
  • OR ocaml-libguestfs-devel-1.32.4-19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 SP4 is installed
  • AND MozillaFirefox-devel-52.9.0esr-109.38 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 12 is installed
  • AND Package Information
  • ImageMagick-6.8.8.1-5 is installed
  • OR libMagick++-6_Q16-3-6.8.8.1-5 is installed
  • OR libMagickCore-6_Q16-1-32bit-6.8.8.1-5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 12 SP1 is installed
  • AND argyllcms-1.6.3-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 12 SP2 is installed
  • AND Package Information
  • imap-2007e_suse-22.1 is installed
  • OR libc-client2007e_suse-2007e_suse-22.1 is installed
  • BACK