Oval Definition:
oval:org.opensuse.security:def:70714
Revision Date
:
2020-12-01
Version
:
1
Title
:
Security update for java-1_8_0-openjdk (Important)
Description
:
This update for java-1_8_0-openjdk to version jdk8u252 fixes the following issues:
- CVE-2020-2754: Forward references to Nashorn (bsc#1169511) - CVE-2020-2755: Improve Nashorn matching (bsc#1169511) - CVE-2020-2756: Better mapping of serial ENUMs (bsc#1169511) - CVE-2020-2757: Less Blocking Array Queues (bsc#1169511) - CVE-2020-2773: Better signatures in XML (bsc#1169511) - CVE-2020-2781: Improve TLS session handling (bsc#1169511) - CVE-2020-2800: Better Headings for HTTP Servers (bsc#1169511) - CVE-2020-2803: Enhance buffering of byte buffers (bsc#1169511) - CVE-2020-2805: Enhance typing of methods (bsc#1169511) - CVE-2020-2830: Better Scanner conversions (bsc#1169511) - Ignore whitespaces after the header or footer in PEM X.509 cert (bsc#1171352)
Family
:
unix
Class
:
patch
Status
:
Reference(s)
:
1027519
1160398
1169511
1171352
1177950
1178591
CVE-2020-2754
CVE-2020-2755
CVE-2020-2756
CVE-2020-2757
CVE-2020-2773
CVE-2020-2781
CVE-2020-2800
CVE-2020-2803
CVE-2020-2805
CVE-2020-2830
CVE-2020-28368
SUSE-SU-2020:1569-2
SUSE-SU-2020:3412-1
Platform(s)
:
SUSE Linux Enterprise Module for Legacy Software 15 SP2
SUSE Linux Enterprise Module for Server Applications 15 SP2
Product(s)
:
Definition Synopsis
SUSE Linux Enterprise Module for Legacy Software 15 SP2 is installed
AND
Package Information
java-1_8_0-openjdk-1.8.0.252-3.35 is installed
OR
java-1_8_0-openjdk-demo-1.8.0.252-3.35 is installed
OR
java-1_8_0-openjdk-devel-1.8.0.252-3.35 is installed
OR
java-1_8_0-openjdk-headless-1.8.0.252-3.35 is installed
Definition Synopsis
SUSE Linux Enterprise Module for Server Applications 15 SP2 is installed
AND
Package Information
xen-4.13.2_02-3.16 is installed
OR
xen-devel-4.13.2_02-3.16 is installed
OR
xen-tools-4.13.2_02-3.16 is installed
OR
xen-tools-xendomains-wait-disk-4.13.2_02-3.16 is installed
BACK