RHSA-2024:8123: Moderate: OpenJDK 11.0.25 Security Update for Windows Builds
Moderate: OpenJDK 11.0.25 Security Update for Windows Builds
Other sources
The OpenJDK 11 packages provide the OpenJDK 11 Java Runtime Environment and the OpenJDK 11 Java Software Development Kit.<br>This release of the Red Hat build of OpenJDK 11 (11.0.25) for Windows serves as a replacement for the Red Hat build of OpenJDK 11 (11.0.24) and includes security and bug fixes, and enhancements. For further information, refer to the release notes linked to in the References section.<br>Security Fix(es):<br><li> giflib: Heap-Buffer Overflow during Image Saving in DumpScreen2RGB</li> Function (CVE-2023-48161)<br><li> JDK: Array indexing integer overflow (8328544) (CVE-2024-21210)</li> <li> JDK: HTTP client improper handling of maxHeaderSize (8328286)</li> (CVE-2024-21208)<br><li> JDK: Unbounded allocation leads to out-of-memory error (8331446)</li> (CVE-2024-21217)<br><li> JDK: Integer conversion error leads to incorrect range check (8332644)</li> (CVE-2024-21235)<br>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:8123?
The severity of RHSA-2024:8123 is classified as moderate.
How do I fix RHSA-2024:8123?
To fix RHSA-2024:8123, update the OpenJDK 11 packages to the latest version provided by Red Hat.
Which software is affected by RHSA-2024:8123?
RHSA-2024:8123 affects the Red Hat OpenJDK Java (for Middleware) software.
When was RHSA-2024:8123 released?
RHSA-2024:8123 was released as part of the OpenJDK 11.0.25 security update.
What does RHSA-2024:8123 address?
RHSA-2024:8123 addresses security vulnerabilities present in the OpenJDK 11 runtime environment.