RHSA-2024:8128: Moderate: OpenJDK 21.0.5 Security Update for Portable Linux Builds
Moderate: OpenJDK 21.0.5 Security Update for Portable Linux Builds
Other sources
The OpenJDK 21 packages provide the OpenJDK 21 Java Runtime Environment and the OpenJDK 21 Java Software Development Kit.<br>This release of the Red Hat build of OpenJDK 21 (21.0.5) for portable Linux serves as a replacement for the Red Hat build of OpenJDK 21 (21.0.4) and includes security and bug fixes, and enhancements. For further information, refer to the release notes linked to in the References section.<br>Security Fix(es):<br><li> giflib: Heap-Buffer Overflow during Image Saving in DumpScreen2RGB Function</li> (CVE-2023-48161)<br><li> OpenJDK: Array indexing integer overflow (8328544) (CVE-2024-21210)</li> <li> OpenJDK: HTTP client improper handling of maxHeaderSize (8328286)</li> (CVE-2024-21208)<br><li> OpenJDK: Unbounded allocation leads to out-of-memory error (8331446)</li> (CVE-2024-21217)<br><li> OpenJDK: Integer conversion error leads to incorrect range check (8332644)</li> (CVE-2024-21235)<br>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:8128?
The severity of RHSA-2024:8128 is classified as Moderate.
What does RHSA-2024:8128 address?
RHSA-2024:8128 addresses security vulnerabilities within OpenJDK 21.0.5 for Portable Linux Builds.
How do I fix RHSA-2024:8128?
To fix RHSA-2024:8128, you should update your OpenJDK 21 packages to the latest version provided by Red Hat.
Which products are affected by RHSA-2024:8128?
RHSA-2024:8128 affects the Red Hat OpenJDK Java (for Middleware) product.
Is it necessary to apply the update for RHSA-2024:8128?
Yes, it is necessary to apply the update for RHSA-2024:8128 to ensure your system's security and stability.