Oval Definition:oval:org.opensuse.security:def:58872
Revision Date:2021-11-24Version:1
Title:Security update for java-1_7_0-openjdk (Important)
Description:

This update for java-1_7_0-openjdk fixes the following issues:



Update to OpenJDK 7u321 (October 2021 CPU):

- CVE-2021-35550: Fixed weak ciphers preferred over stronger ones for TLS (bsc#1191901). - CVE-2021-35556: Fixed excessive memory allocation in RTFParser (bsc#1191910). - CVE-2021-35559: Fixed excessive memory allocation in RTFReader (bsc#1191911). - CVE-2021-35561: Fixed excessive memory allocation in HashMap and HashSet (bsc#1191912). - CVE-2021-35564: Fixed certificates with end dates too far in the future can corrupt keystore (bsc#1191913). - CVE-2021-35565: Fixed loop in HttpsServer triggered during TLS session close (bsc#1191909). - CVE-2021-35586: Fixed excessive memory allocation in BMPImageReader (bsc#1191914). - CVE-2021-35588: Fixed incomplete validation of inner class references in ClassFileParser (bsc#1191905) - CVE-2021-35603: Fixed non-constant comparison during TLS handshakes (bsc#1191906).
Family:unixClass:patch
Status:Reference(s):1027519
1047002
1081741
1086039
1089152
1089635
1090820
1090822
1090823
1097356
1103098
1105437
1105459
1105460
1111331
1112039
1125330
1127987
1129231
1129821
1130262
1132728
1132729
1132732
1132734
1134718
1150011
1152107
1172031
1172225
1173798
1174205
1174757
1175691
1176069
1191901
1191905
1191906
1191909
1191910
1191911
1191912
1191913
1191914
CVE-2013-1982
CVE-2013-6435
CVE-2014-8118
CVE-2015-3451
CVE-2015-7236
CVE-2017-10790
CVE-2017-8779
CVE-2018-10471
CVE-2018-10472
CVE-2018-1050
CVE-2018-10844
CVE-2018-10845
CVE-2018-10846
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-18335
CVE-2018-18356
CVE-2018-18386
CVE-2018-18506
CVE-2018-5391
CVE-2018-5848
CVE-2018-8897
CVE-2019-10245
CVE-2019-11091
CVE-2019-14822
CVE-2019-16746
CVE-2019-20807
CVE-2019-2602
CVE-2019-2684
CVE-2019-2697
CVE-2019-2698
CVE-2019-5785
CVE-2019-9788
CVE-2019-9790
CVE-2019-9791
CVE-2019-9792
CVE-2019-9793
CVE-2019-9794
CVE-2019-9795
CVE-2019-9796
CVE-2019-9801
CVE-2019-9810
CVE-2019-9813
CVE-2020-14314
CVE-2020-14331
CVE-2020-14386
CVE-2020-16166
CVE-2021-35550
CVE-2021-35556
CVE-2021-35559
CVE-2021-35561
CVE-2021-35564
CVE-2021-35565
CVE-2021-35586
CVE-2021-35588
CVE-2021-35603
SUSE-SU-2018:0832-1
SUSE-SU-2018:1216-1
SUSE-SU-2018:3787-1
SUSE-SU-2019:0736-1
SUSE-SU-2019:0852-1
SUSE-SU-2019:1235-1
SUSE-SU-2019:2389-1
SUSE-SU-2020:2576-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • libpoppler-glib8-0.62.0-lp150.2 is installed
  • OR libpoppler-qt5-1-0.62.0-lp150.2 is installed
  • OR libpoppler73-0.62.0-lp150.2 is installed
  • OR poppler-tools-0.62.0-lp150.2 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • perl-Mail-SpamAssassin-3.4.2-lp151.8.3 is installed
  • OR perl-Mail-SpamAssassin-Plugin-iXhash2-2.05-lp151.8.3 is installed
  • OR spamassassin-3.4.2-lp151.8.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • libdcerpc-binding0-4.4.2-38.17 is installed
  • OR libdcerpc-binding0-32bit-4.4.2-38.17 is installed
  • OR libdcerpc0-4.4.2-38.17 is installed
  • OR libdcerpc0-32bit-4.4.2-38.17 is installed
  • OR libndr-krb5pac0-4.4.2-38.17 is installed
  • OR libndr-krb5pac0-32bit-4.4.2-38.17 is installed
  • OR libndr-nbt0-4.4.2-38.17 is installed
  • OR libndr-nbt0-32bit-4.4.2-38.17 is installed
  • OR libndr-standard0-4.4.2-38.17 is installed
  • OR libndr-standard0-32bit-4.4.2-38.17 is installed
  • OR libndr0-4.4.2-38.17 is installed
  • OR libndr0-32bit-4.4.2-38.17 is installed
  • OR libnetapi0-4.4.2-38.17 is installed
  • OR libnetapi0-32bit-4.4.2-38.17 is installed
  • OR libsamba-credentials0-4.4.2-38.17 is installed
  • OR libsamba-credentials0-32bit-4.4.2-38.17 is installed
  • OR libsamba-errors0-4.4.2-38.17 is installed
  • OR libsamba-errors0-32bit-4.4.2-38.17 is installed
  • OR libsamba-hostconfig0-4.4.2-38.17 is installed
  • OR libsamba-hostconfig0-32bit-4.4.2-38.17 is installed
  • OR libsamba-passdb0-4.4.2-38.17 is installed
  • OR libsamba-passdb0-32bit-4.4.2-38.17 is installed
  • OR libsamba-util0-4.4.2-38.17 is installed
  • OR libsamba-util0-32bit-4.4.2-38.17 is installed
  • OR libsamdb0-4.4.2-38.17 is installed
  • OR libsamdb0-32bit-4.4.2-38.17 is installed
  • OR libsmbclient0-4.4.2-38.17 is installed
  • OR libsmbclient0-32bit-4.4.2-38.17 is installed
  • OR libsmbconf0-4.4.2-38.17 is installed
  • OR libsmbconf0-32bit-4.4.2-38.17 is installed
  • OR libsmbldap0-4.4.2-38.17 is installed
  • OR libsmbldap0-32bit-4.4.2-38.17 is installed
  • OR libtevent-util0-4.4.2-38.17 is installed
  • OR libtevent-util0-32bit-4.4.2-38.17 is installed
  • OR libwbclient0-4.4.2-38.17 is installed
  • OR libwbclient0-32bit-4.4.2-38.17 is installed
  • OR samba-4.4.2-38.17 is installed
  • OR samba-client-4.4.2-38.17 is installed
  • OR samba-client-32bit-4.4.2-38.17 is installed
  • OR samba-doc-4.4.2-38.17 is installed
  • OR samba-libs-4.4.2-38.17 is installed
  • OR samba-libs-32bit-4.4.2-38.17 is installed
  • OR samba-winbind-4.4.2-38.17 is installed
  • OR samba-winbind-32bit-4.4.2-38.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • MozillaFirefox-60.6.1esr-109.63 is installed
  • OR MozillaFirefox-devel-60.6.1esr-109.63 is installed
  • OR MozillaFirefox-translations-common-60.6.1esr-109.63 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • gnutls-3.2.15-18.6 is installed
  • OR libgnutls-openssl27-3.2.15-18.6 is installed
  • OR libgnutls28-3.2.15-18.6 is installed
  • OR libgnutls28-32bit-3.2.15-18.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_103-92_53-default-11-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_16-11-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libXext6-1.3.2-3 is installed
  • OR libXext6-32bit-1.3.2-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libsqlite3-0-3.8.10.2-9.15 is installed
  • OR libsqlite3-0-32bit-3.8.10.2-9.15 is installed
  • OR sqlite3-3.8.10.2-9.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND ucode-intel-20191112-13.53 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND squid-3.5.21-26.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • java-1_7_0-openjdk-1.7.0.321-43.53.2 is installed
  • OR java-1_7_0-openjdk-demo-1.7.0.321-43.53.2 is installed
  • OR java-1_7_0-openjdk-devel-1.7.0.321-43.53.2 is installed
  • OR java-1_7_0-openjdk-headless-1.7.0.321-43.53.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • alsa-1.0.27.2-15 is installed
  • OR alsa-docs-1.0.27.2-15 is installed
  • OR libasound2-1.0.27.2-15 is installed
  • OR libasound2-32bit-1.0.27.2-15 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND squid-3.5.21-26.23 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • crowbar-5.0+git.1528696845.81a7b5d0-3.3 is installed
  • OR crowbar-core-5.0+git.1533887407.6e9b0412d-3.8 is installed
  • OR crowbar-core-branding-upstream-5.0+git.1533887407.6e9b0412d-3.8 is installed
  • OR crowbar-devel-5.0+git.1528696845.81a7b5d0-3.3 is installed
  • OR crowbar-ha-5.0+git.1530177874.35b9099-3.3 is installed
  • OR crowbar-init-5.0+git.1520420379.d5bbb35-3.3 is installed
  • OR crowbar-openstack-5.0+git.1534167599.d325ef804-4.8 is installed
  • OR crowbar-ui-1.2.0+git.1533844061.4ac8e723-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • libfreebl3-3.53.1-58.48 is installed
  • OR libfreebl3-32bit-3.53.1-58.48 is installed
  • OR libfreebl3-hmac-3.53.1-58.48 is installed
  • OR libfreebl3-hmac-32bit-3.53.1-58.48 is installed
  • OR libsoftokn3-3.53.1-58.48 is installed
  • OR libsoftokn3-32bit-3.53.1-58.48 is installed
  • OR libsoftokn3-hmac-3.53.1-58.48 is installed
  • OR libsoftokn3-hmac-32bit-3.53.1-58.48 is installed
  • OR mozilla-nspr-4.25-19.15 is installed
  • OR mozilla-nspr-32bit-4.25-19.15 is installed
  • OR mozilla-nspr-devel-4.25-19.15 is installed
  • OR mozilla-nss-3.53.1-58.48 is installed
  • OR mozilla-nss-32bit-3.53.1-58.48 is installed
  • OR mozilla-nss-certs-3.53.1-58.48 is installed
  • OR mozilla-nss-certs-32bit-3.53.1-58.48 is installed
  • OR mozilla-nss-devel-3.53.1-58.48 is installed
  • OR mozilla-nss-sysinit-3.53.1-58.48 is installed
  • OR mozilla-nss-sysinit-32bit-3.53.1-58.48 is installed
  • OR mozilla-nss-tools-3.53.1-58.48 is installed
  • BACK