RHSA-2024:8122: Moderate: OpenJDK 11.0.25 Security Update for Portable Linux Builds
Moderate: OpenJDK 11.0.25 Security Update for Portable Linux Builds
Other sources
The OpenJDK 11 packages provide the OpenJDK 11 Java Runtime Environment and the OpenJDK 11 Java Software Development Kit.<br>This release of the Red Hat build of OpenJDK 11 (11.0.25) for portable Linux serves as a replacement for the Red Hat build of OpenJDK 11 (11.0.24) and includes security and bug fixes, and enhancements. For further information, refer to the release notes linked to in the References section.<br>Security Fix(es):<br><li> giflib: Heap-Buffer Overflow during Image Saving in DumpScreen2RGB</li> Function (CVE-2023-48161)<br><li> JDK: Array indexing integer overflow (8328544) (CVE-2024-21210)</li> <li> JDK: HTTP client improper handling of maxHeaderSize (8328286)</li> (CVE-2024-21208)<br><li> JDK: Unbounded allocation leads to out-of-memory error (8331446)</li> (CVE-2024-21217)<br><li> JDK: Integer conversion error leads to incorrect range check (8332644)</li> (CVE-2024-21235)<br>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:8122?
The severity of RHSA-2024:8122 is classified as Moderate.
How do I fix RHSA-2024:8122?
To fix RHSA-2024:8122, update the OpenJDK packages to version 11.0.25 or later.
What software is affected by RHSA-2024:8122?
RHSA-2024:8122 affects the Red Hat OpenJDK Java (for Middleware) package.
What does RHSA-2024:8122 address?
RHSA-2024:8122 addresses security vulnerabilities in the OpenJDK 11 Runtime Environment.
When was the RHSA-2024:8122 advisory released?
The RHSA-2024:8122 advisory was released on the date specified in the Red Hat security announcement.