RHSA-2024:1821: Moderate: java-11-openjdk security update
Moderate: java-11-openjdk security update
Other sources
The java-11-openjdk packages provide the OpenJDK 11 Java Runtime Environment and the OpenJDK 11 Java Software Development Kit.<br>Security Fix(es):<br><li> OpenJDK: long Exception message leading to crash (8319851) (CVE-2024-21011)</li> <li> OpenJDK: integer overflow in C1 compiler address generation (8322122) (CVE-2024-21068)</li> <li> OpenJDK: Pack200 excessive memory allocation (8322114) (CVE-2024-21085)</li> <li> OpenJDK: C2 compilation fails with "Exceeded noderegs array" (8317507) (CVE-2024-21094)</li> <li> OpenJDK: HTTP/2 client improper reverse DNS lookup (8315708) (CVE-2024-21012)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:1821?
The severity of RHSA-2024:1821 is categorized as moderate.
How do I fix RHSA-2024:1821?
To fix RHSA-2024:1821, you need to update to the latest version of the affected java-11-openjdk packages.
Which packages are affected by RHSA-2024:1821?
RHSA-2024:1821 affects multiple java-11-openjdk packages across different Red Hat Enterprise Linux products.
What vulnerabilities are addressed in RHSA-2024:1821?
RHSA-2024:1821 addresses vulnerabilities that include a long Exception message leading to crash, identified as CVE-2024-21011.
Is RHSA-2024:1821 applicable to my version of Red Hat?
Yes, RHSA-2024:1821 applies to all supported versions of Red Hat Enterprise Linux that use java-11-openjdk.