REDHAT-BUG-1889290: Medium severity OpenJDK OpenJDK vulnerability
A flaw was found in the way the Libraries component of OpenJDK handled blacklists of untrusted certificates. Alternate certificate encodings were not considered, causing certain certificate fingerprints to not be blacklisted, possibly leading to untrusted certificates being accepted.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1889290?
The severity of REDHAT-BUG-1889290 is considered moderate due to the potential acceptance of untrusted certificates.
How do I fix REDHAT-BUG-1889290?
To fix REDHAT-BUG-1889290, update to the latest version of OpenJDK that addresses this vulnerability.
What are the implications of REDHAT-BUG-1889290?
The implications of REDHAT-BUG-1889290 include the risk of untrusted certificates being accepted, which could lead to insecure connections.
Which software is affected by REDHAT-BUG-1889290?
The software affected by REDHAT-BUG-1889290 is OpenJDK.
Is there a workaround for REDHAT-BUG-1889290?
No official workaround is recommended for REDHAT-BUG-1889290; updating to a patched version is advised.