Revision Date: | 2020-12-01 | Version: | 1 |
Title: | Security update for java-1_8_0-openjdk (Important) |
Description: |
This update for java-1_8_0-openjdk to the jdk8u181 (icedtea 3.9.0) release fixes the following issues:
These security issues were fixed:
- CVE-2018-2938: Difficult to exploit vulnerability allowed unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks of this vulnerability can result in takeover of Java SE (bsc#1101644). - CVE-2018-2940: Vulnerability in subcomponent: Libraries. Easily exploitable vulnerability allowed unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE, Java SE Embedded accessible data (bsc#1101645) - CVE-2018-2952: Vulnerability in subcomponent: Concurrency. Difficult to exploit vulnerability allowed unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Java SE, Java SE Embedded, JRockit (bsc#1101651) - CVE-2018-2973: Vulnerability in subcomponent: JSSE. Difficult to exploit vulnerability allowed unauthenticated attacker with network access via SSL/TLS to compromise Java SE, Java SE Embedded. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java SE, Java SE Embedded accessible data (bsc#1101656)
These non-security issues were fixed:
- Improve desktop file usage - Better Internet address support - speculative traps break when classes are redefined - sun/security/pkcs11/ec/ReadCertificates.java fails intermittently - Clean up code that saves the previous versions of redefined classes - Prevent SIGSEGV in ReceiverTypeData::clean_weak_klass_links - RedefineClasses() tests fail assert(((Metadata*)obj)->is_valid()) failed: obj is valid - NMT is not enabled if NMT option is specified after class path specifiers - EndEntityChecker should not process custom extensions after PKIX validation - SupportedDSAParamGen.java failed with timeout - Montgomery multiply intrinsic should use correct name - When determining the ciphersuite lists, there is no debug output for disabled suites. - sun/security/mscapi/SignedObjectChain.java fails on Windows - On Windows Swing changes keyboard layout on a window activation - IfNode::range_check_trap_proj() should handler dying subgraph with single if proj - Even better Internet address support - Newlines in JAXB string values of SOAP-requests are escaped to '
' - TestFlushableGZIPOutputStream failing with IndexOutOfBoundsException - Unable to use JDWP API in JDK 8 to debug JDK 9 VM - Hotspot crash on Cassandra 3.11.1 startup with libnuma 2.0.3 - Performance drop with Java JDK 1.8.0_162-b32 - Upgrade time-zone data to tzdata2018d - Fix potential crash in BufImg_SetupICM - JDK 8u181 l10n resource file update - Remove debug print statements from RMI fix - (tz) Upgrade time-zone data to tzdata2018e - ObjectInputStream filterCheck method throws NullPointerException - adjust reflective access checks
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1048278 1048339 1048352 1048387 1048790 1052577 1053431 1054017 1080919 1084604 1086774 1086775 1086813 1086814 1086817 1086820 1096745 1101644 1101645 1101651 1101656 1106812 1113231 1116717 1117275 1118597 1119493 1120767 1121563 1123156 1123371 1123377 1123378 1125352 1126056 1127557 1128657 1130230 1130246 1132348 1132400 1132721 1138034 1144504 1149458 1151839 1161167 1167890 1168930 1173477 1173691 1173694 1173700 1173701 1173743 1173874 1173875 1173876 1173880 955942 CVE-2011-1098 CVE-2011-1154 CVE-2011-1155 CVE-2013-1990 CVE-2013-1999 CVE-2016-7953 CVE-2017-10053 CVE-2017-10067 CVE-2017-10074 CVE-2017-10078 CVE-2017-10081 CVE-2017-10087 CVE-2017-10089 CVE-2017-10090 CVE-2017-10096 CVE-2017-10101 CVE-2017-10102 CVE-2017-10105 CVE-2017-10107 CVE-2017-10108 CVE-2017-10109 CVE-2017-10110 CVE-2017-10111 CVE-2017-10115 CVE-2017-10116 CVE-2017-10125 CVE-2017-10243 CVE-2017-11103 CVE-2017-13672 CVE-2017-13673 CVE-2017-15710 CVE-2017-15715 CVE-2017-18922 CVE-2018-1000872 CVE-2018-12020 CVE-2018-1283 CVE-2018-1301 CVE-2018-1302 CVE-2018-1303 CVE-2018-1312 CVE-2018-16872 CVE-2018-16890 CVE-2018-19364 CVE-2018-19489 CVE-2018-19870 CVE-2018-19872 CVE-2018-21247 CVE-2018-2938 CVE-2018-2940 CVE-2018-2952 CVE-2018-2973 CVE-2018-3639 CVE-2018-6954 CVE-2018-7858 CVE-2019-10164 CVE-2019-12625 CVE-2019-12900 CVE-2019-20839 CVE-2019-20840 CVE-2019-3822 CVE-2019-3823 CVE-2019-3842 CVE-2019-6454 CVE-2019-6778 CVE-2020-0569 CVE-2020-14397 CVE-2020-14398 CVE-2020-14399 CVE-2020-14400 CVE-2020-14401 CVE-2020-14402 CVE-2020-14403 CVE-2020-14404 CVE-2020-5260 SUSE-SU-2017:2237-1 SUSE-SU-2017:2263-1 SUSE-SU-2018:1161-2 SUSE-SU-2018:3064-2 SUSE-SU-2019:0249-1 SUSE-SU-2019:0391-1 SUSE-SU-2019:0489-1 SUSE-SU-2019:1783-1 SUSE-SU-2019:3066-1 SUSE-SU-2020:0992-1 SUSE-SU-2020:2167-1
|
Platform(s): | openSUSE Leap 15.0 openSUSE Leap 15.1 SUSE Linux Enterprise Server 12 SP2-BCL SUSE Linux Enterprise Server 12 SP2-ESPOS SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP3-BCL SUSE Linux Enterprise Server 12 SP3-ESPOS SUSE Linux Enterprise Server 12 SP3-LTSS SUSE Linux Enterprise Server 12 SP3-TERADATA SUSE Linux Enterprise Server 12 SP4 SUSE OpenStack Cloud 8 SUSE OpenStack Cloud 9 SUSE OpenStack Cloud Crowbar 8
| Product(s): | |
Definition Synopsis |
openSUSE Leap 15.0 is installed AND Package Information
gnutls-3.6.2-lp150.3 is installed
OR libgnutls-dane0-3.6.2-lp150.3 is installed
OR libgnutls30-3.6.2-lp150.3 is installed
|
Definition Synopsis |
openSUSE Leap 15.1 is installed
AND Package Information
libblkid-devel-2.33.1-lp151.3.3 is installed
OR libblkid-devel-32bit-2.33.1-lp151.3.3 is installed
OR libblkid-devel-static-2.33.1-lp151.3.3 is installed
OR libblkid1-2.33.1-lp151.3.3 is installed
OR libblkid1-32bit-2.33.1-lp151.3.3 is installed
OR libfdisk-devel-2.33.1-lp151.3.3 is installed
OR libfdisk-devel-static-2.33.1-lp151.3.3 is installed
OR libfdisk1-2.33.1-lp151.3.3 is installed
OR libmount-devel-2.33.1-lp151.3.3 is installed
OR libmount-devel-32bit-2.33.1-lp151.3.3 is installed
OR libmount-devel-static-2.33.1-lp151.3.3 is installed
OR libmount1-2.33.1-lp151.3.3 is installed
OR libmount1-32bit-2.33.1-lp151.3.3 is installed
OR libsmartcols-devel-2.33.1-lp151.3.3 is installed
OR libsmartcols-devel-static-2.33.1-lp151.3.3 is installed
OR libsmartcols1-2.33.1-lp151.3.3 is installed
OR libuuid-devel-2.33.1-lp151.3.3 is installed
OR libuuid-devel-32bit-2.33.1-lp151.3.3 is installed
OR libuuid-devel-static-2.33.1-lp151.3.3 is installed
OR libuuid1-2.33.1-lp151.3.3 is installed
OR libuuid1-32bit-2.33.1-lp151.3.3 is installed
OR python3-libmount-2.33.1-lp151.3.3 is installed
OR shadow-4.6-lp151.2.3 is installed
OR util-linux-2.33.1-lp151.3.3 is installed
OR util-linux-lang-2.33.1-lp151.3.3 is installed
OR util-linux-systemd-2.33.1-lp151.3.3 is installed
OR uuidd-2.33.1-lp151.3.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-BCL is installed
AND Package Information
java-1_8_0-openjdk-1.8.0.181-27.26 is installed
OR java-1_8_0-openjdk-demo-1.8.0.181-27.26 is installed
OR java-1_8_0-openjdk-devel-1.8.0.181-27.26 is installed
OR java-1_8_0-openjdk-headless-1.8.0.181-27.26 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
AND Package Information
gpg2-2.0.24-9.3 is installed
OR gpg2-lang-2.0.24-9.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND libXvMC1-1.0.8-7 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-BCL is installed
AND Package Information
kernel-default-4.4.180-94.103 is installed
OR kernel-default-base-4.4.180-94.103 is installed
OR kernel-default-devel-4.4.180-94.103 is installed
OR kernel-devel-4.4.180-94.103 is installed
OR kernel-macros-4.4.180-94.103 is installed
OR kernel-source-4.4.180-94.103 is installed
OR kernel-syms-4.4.180-94.103 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
AND sudo-1.8.20p2-3.14 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-LTSS is installed
AND Package Information
libpython2_7-1_0-2.7.13-28.31 is installed
OR libpython2_7-1_0-32bit-2.7.13-28.31 is installed
OR python-2.7.13-28.31 is installed
OR python-32bit-2.7.13-28.31 is installed
OR python-base-2.7.13-28.31 is installed
OR python-base-32bit-2.7.13-28.31 is installed
OR python-curses-2.7.13-28.31 is installed
OR python-demo-2.7.13-28.31 is installed
OR python-devel-2.7.13-28.31 is installed
OR python-doc-2.7.13-28.31 is installed
OR python-doc-pdf-2.7.13-28.31 is installed
OR python-gdbm-2.7.13-28.31 is installed
OR python-idle-2.7.13-28.31 is installed
OR python-tk-2.7.13-28.31 is installed
OR python-xml-2.7.13-28.31 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
AND ed-1.9-4.4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4 is installed
AND Package Information
dracut-044.1-9 is installed
OR dracut-fips-044.1-9 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 8 is installed
AND clamav-0.100.3-33.26 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 9 is installed
AND Package Information
tomcat-9.0.36-3.45 is installed
OR tomcat-admin-webapps-9.0.36-3.45 is installed
OR tomcat-docs-webapp-9.0.36-3.45 is installed
OR tomcat-el-3_0-api-9.0.36-3.45 is installed
OR tomcat-javadoc-9.0.36-3.45 is installed
OR tomcat-jsp-2_3-api-9.0.36-3.45 is installed
OR tomcat-lib-9.0.36-3.45 is installed
OR tomcat-servlet-4_0-api-9.0.36-3.45 is installed
OR tomcat-webapps-9.0.36-3.45 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud Crowbar 8 is installed
AND python-PyKMIP-0.6.0-3.3 is installed
|