RHSA-2025:3844: Moderate: java-1.8.0-openjdk security update
Moderate: java-1.8.0-openjdk security update
Other sources
The java-1.8.0-openjdk packages provide the OpenJDK 8 Java Runtime Environment and the OpenJDK 8 Java Software Development Kit.Security Fix(es): JDK: Better TLS connection support (CVE-2025-21587) JDK: Improve compiler transformations (CVE-2025-30691) JDK: Enhance Buffered Image handling (CVE-2025-30698) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:3844?
The severity of RHSA-2025:3844 is moderate.
How do I fix RHSA-2025:3844?
To address RHSA-2025:3844, update to package version 1.8.0-openjdk-1.8.0.452.b09-1.el7_9 or higher.
Which products are affected by RHSA-2025:3844?
RHSA-2025:3844 affects Red Hat Enterprise Linux Server and its Extended Life Cycle Support versions.
What security issues does RHSA-2025:3844 address?
RHSA-2025:3844 addresses better TLS connection support as specified in CVE-2025-21587.
What Java packages are involved in RHSA-2025:3844?
The involved Java packages in RHSA-2025:3844 include java-1.8.0-openjdk and several related components such as accessibility and debuginfo.