Oval Definition:oval:org.opensuse.security:def:74049
Revision Date:2020-12-01Version:1
Title:Security update for java-1_8_0-openjdk (Important)
Description:

This update for java-1_8_0-openjdk to version jdk8u252 fixes the following issues:

- CVE-2020-2754: Forward references to Nashorn (bsc#1169511) - CVE-2020-2755: Improve Nashorn matching (bsc#1169511) - CVE-2020-2756: Better mapping of serial ENUMs (bsc#1169511) - CVE-2020-2757: Less Blocking Array Queues (bsc#1169511) - CVE-2020-2773: Better signatures in XML (bsc#1169511) - CVE-2020-2781: Improve TLS session handling (bsc#1169511) - CVE-2020-2800: Better Headings for HTTP Servers (bsc#1169511) - CVE-2020-2803: Enhance buffering of byte buffers (bsc#1169511) - CVE-2020-2805: Enhance typing of methods (bsc#1169511) - CVE-2020-2830: Better Scanner conversions (bsc#1169511) - Ignore whitespaces after the header or footer in PEM X.509 cert (bsc#1171352)
Family:unixClass:patch
Status:Reference(s):1160398
1169511
1171352
1177582
CVE-2020-13943
CVE-2020-2754
CVE-2020-2755
CVE-2020-2756
CVE-2020-2757
CVE-2020-2773
CVE-2020-2781
CVE-2020-2800
CVE-2020-2803
CVE-2020-2805
CVE-2020-2830
SUSE-SU-2020:1569-2
SUSE-SU-2020:3068-1
Platform(s):SUSE Linux Enterprise Module for Legacy Software 15 SP2
SUSE Linux Enterprise Module for Web Scripting 15 SP2
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 15 SP2 is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.252-3.35 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.252-3.35 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.252-3.35 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.252-3.35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 SP2 is installed
  • AND Package Information
  • tomcat-9.0.36-3.12 is installed
  • OR tomcat-admin-webapps-9.0.36-3.12 is installed
  • OR tomcat-el-3_0-api-9.0.36-3.12 is installed
  • OR tomcat-jsp-2_3-api-9.0.36-3.12 is installed
  • OR tomcat-lib-9.0.36-3.12 is installed
  • OR tomcat-servlet-4_0-api-9.0.36-3.12 is installed
  • OR tomcat-webapps-9.0.36-3.12 is installed
  • BACK