Oval Definition:oval:org.opensuse.security:def:59432
Revision Date:2020-12-01Version:1
Title:Security update for java-1_8_0-openjdk (Important)
Description:

This update for java-1_8_0-openjdk to the jdk8u181 (icedtea 3.9.0) release fixes the following issues:

These security issues were fixed:

- CVE-2018-2938: Difficult to exploit vulnerability allowed unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks of this vulnerability can result in takeover of Java SE (bsc#1101644). - CVE-2018-2940: Vulnerability in subcomponent: Libraries. Easily exploitable vulnerability allowed unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded accessible data (bsc#1101645) - CVE-2018-2952: Vulnerability in subcomponent: Concurrency. Difficult to exploit vulnerability allowed unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit (bsc#1101651) - CVE-2018-2973: Vulnerability in subcomponent: JSSE. Difficult to exploit vulnerability allowed unauthenticated attacker with network access via SSL/TLS to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java SE, Java SE Embedded accessible data (bsc#1101656)

These non-security issues were fixed:

- Improve desktop file usage - Better Internet address support - speculative traps break when classes are redefined - sun/security/pkcs11/ec/ReadCertificates.java fails intermittently - Clean up code that saves the previous versions of redefined classes - Prevent SIGSEGV in ReceiverTypeData::clean_weak_klass_links - RedefineClasses() tests fail assert(((Metadata*)obj)->is_valid()) failed: obj is valid - NMT is not enabled if NMT option is specified after class path specifiers - EndEntityChecker should not process custom extensions after PKIX validation - SupportedDSAParamGen.java failed with timeout - Montgomery multiply intrinsic should use correct name - When determining the ciphersuite lists, there is no debug output for disabled suites. - sun/security/mscapi/SignedObjectChain.java fails on Windows - On Windows Swing changes keyboard layout on a window activation - IfNode::range_check_trap_proj() should handler dying subgraph with single if proj - Even better Internet address support - Newlines in JAXB string values of SOAP-requests are escaped to ' ' - TestFlushableGZIPOutputStream failing with IndexOutOfBoundsException - Unable to use JDWP API in JDK 8 to debug JDK 9 VM - Hotspot crash on Cassandra 3.11.1 startup with libnuma 2.0.3 - Performance drop with Java JDK 1.8.0_162-b32 - Upgrade time-zone data to tzdata2018d - Fix potential crash in BufImg_SetupICM - JDK 8u181 l10n resource file update - Remove debug print statements from RMI fix - (tz) Upgrade time-zone data to tzdata2018e - ObjectInputStream filterCheck method throws NullPointerException - adjust reflective access checks
Family:unixClass:patch
Status:Reference(s):1048278
1048339
1048352
1048387
1048790
1052577
1053431
1054017
1080919
1084604
1086774
1086775
1086813
1086814
1086817
1086820
1096745
1101644
1101645
1101651
1101656
1106812
1113231
1116717
1117275
1118597
1119493
1120767
1121563
1123156
1123371
1123377
1123378
1125352
1126056
1127557
1128657
1130230
1130246
1132348
1132400
1132721
1138034
1144504
1149458
1151839
1161167
1167890
1168930
1173477
1173691
1173694
1173700
1173701
1173743
1173874
1173875
1173876
1173880
955942
CVE-2011-1098
CVE-2011-1154
CVE-2011-1155
CVE-2013-1990
CVE-2013-1999
CVE-2016-7953
CVE-2017-10053
CVE-2017-10067
CVE-2017-10074
CVE-2017-10078
CVE-2017-10081
CVE-2017-10087
CVE-2017-10089
CVE-2017-10090
CVE-2017-10096
CVE-2017-10101
CVE-2017-10102
CVE-2017-10105
CVE-2017-10107
CVE-2017-10108
CVE-2017-10109
CVE-2017-10110
CVE-2017-10111
CVE-2017-10115
CVE-2017-10116
CVE-2017-10125
CVE-2017-10243
CVE-2017-11103
CVE-2017-13672
CVE-2017-13673
CVE-2017-15710
CVE-2017-15715
CVE-2017-18922
CVE-2018-1000872
CVE-2018-12020
CVE-2018-1283
CVE-2018-1301
CVE-2018-1302
CVE-2018-1303
CVE-2018-1312
CVE-2018-16872
CVE-2018-16890
CVE-2018-19364
CVE-2018-19489
CVE-2018-19870
CVE-2018-19872
CVE-2018-21247
CVE-2018-2938
CVE-2018-2940
CVE-2018-2952
CVE-2018-2973
CVE-2018-3639
CVE-2018-6954
CVE-2018-7858
CVE-2019-10164
CVE-2019-12625
CVE-2019-12900
CVE-2019-20839
CVE-2019-20840
CVE-2019-3822
CVE-2019-3823
CVE-2019-3842
CVE-2019-6454
CVE-2019-6778
CVE-2020-0569
CVE-2020-14397
CVE-2020-14398
CVE-2020-14399
CVE-2020-14400
CVE-2020-14401
CVE-2020-14402
CVE-2020-14403
CVE-2020-14404
CVE-2020-5260
SUSE-SU-2017:2237-1
SUSE-SU-2017:2263-1
SUSE-SU-2018:1161-2
SUSE-SU-2018:3064-2
SUSE-SU-2019:0249-1
SUSE-SU-2019:0391-1
SUSE-SU-2019:0489-1
SUSE-SU-2019:1783-1
SUSE-SU-2019:3066-1
SUSE-SU-2020:0992-1
SUSE-SU-2020:2167-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • gnutls-3.6.2-lp150.3 is installed
  • OR libgnutls-dane0-3.6.2-lp150.3 is installed
  • OR libgnutls30-3.6.2-lp150.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libblkid-devel-2.33.1-lp151.3.3 is installed
  • OR libblkid-devel-32bit-2.33.1-lp151.3.3 is installed
  • OR libblkid-devel-static-2.33.1-lp151.3.3 is installed
  • OR libblkid1-2.33.1-lp151.3.3 is installed
  • OR libblkid1-32bit-2.33.1-lp151.3.3 is installed
  • OR libfdisk-devel-2.33.1-lp151.3.3 is installed
  • OR libfdisk-devel-static-2.33.1-lp151.3.3 is installed
  • OR libfdisk1-2.33.1-lp151.3.3 is installed
  • OR libmount-devel-2.33.1-lp151.3.3 is installed
  • OR libmount-devel-32bit-2.33.1-lp151.3.3 is installed
  • OR libmount-devel-static-2.33.1-lp151.3.3 is installed
  • OR libmount1-2.33.1-lp151.3.3 is installed
  • OR libmount1-32bit-2.33.1-lp151.3.3 is installed
  • OR libsmartcols-devel-2.33.1-lp151.3.3 is installed
  • OR libsmartcols-devel-static-2.33.1-lp151.3.3 is installed
  • OR libsmartcols1-2.33.1-lp151.3.3 is installed
  • OR libuuid-devel-2.33.1-lp151.3.3 is installed
  • OR libuuid-devel-32bit-2.33.1-lp151.3.3 is installed
  • OR libuuid-devel-static-2.33.1-lp151.3.3 is installed
  • OR libuuid1-2.33.1-lp151.3.3 is installed
  • OR libuuid1-32bit-2.33.1-lp151.3.3 is installed
  • OR python3-libmount-2.33.1-lp151.3.3 is installed
  • OR shadow-4.6-lp151.2.3 is installed
  • OR util-linux-2.33.1-lp151.3.3 is installed
  • OR util-linux-lang-2.33.1-lp151.3.3 is installed
  • OR util-linux-systemd-2.33.1-lp151.3.3 is installed
  • OR uuidd-2.33.1-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.181-27.26 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.181-27.26 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.181-27.26 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.181-27.26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • gpg2-2.0.24-9.3 is installed
  • OR gpg2-lang-2.0.24-9.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND libXvMC1-1.0.8-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • kernel-default-4.4.180-94.103 is installed
  • OR kernel-default-base-4.4.180-94.103 is installed
  • OR kernel-default-devel-4.4.180-94.103 is installed
  • OR kernel-devel-4.4.180-94.103 is installed
  • OR kernel-macros-4.4.180-94.103 is installed
  • OR kernel-source-4.4.180-94.103 is installed
  • OR kernel-syms-4.4.180-94.103 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND sudo-1.8.20p2-3.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • libpython2_7-1_0-2.7.13-28.31 is installed
  • OR libpython2_7-1_0-32bit-2.7.13-28.31 is installed
  • OR python-2.7.13-28.31 is installed
  • OR python-32bit-2.7.13-28.31 is installed
  • OR python-base-2.7.13-28.31 is installed
  • OR python-base-32bit-2.7.13-28.31 is installed
  • OR python-curses-2.7.13-28.31 is installed
  • OR python-demo-2.7.13-28.31 is installed
  • OR python-devel-2.7.13-28.31 is installed
  • OR python-doc-2.7.13-28.31 is installed
  • OR python-doc-pdf-2.7.13-28.31 is installed
  • OR python-gdbm-2.7.13-28.31 is installed
  • OR python-idle-2.7.13-28.31 is installed
  • OR python-tk-2.7.13-28.31 is installed
  • OR python-xml-2.7.13-28.31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND ed-1.9-4.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • dracut-044.1-9 is installed
  • OR dracut-fips-044.1-9 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND clamav-0.100.3-33.26 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND Package Information
  • tomcat-9.0.36-3.45 is installed
  • OR tomcat-admin-webapps-9.0.36-3.45 is installed
  • OR tomcat-docs-webapp-9.0.36-3.45 is installed
  • OR tomcat-el-3_0-api-9.0.36-3.45 is installed
  • OR tomcat-javadoc-9.0.36-3.45 is installed
  • OR tomcat-jsp-2_3-api-9.0.36-3.45 is installed
  • OR tomcat-lib-9.0.36-3.45 is installed
  • OR tomcat-servlet-4_0-api-9.0.36-3.45 is installed
  • OR tomcat-webapps-9.0.36-3.45 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND python-PyKMIP-0.6.0-3.3 is installed
  • BACK