Lucene search

K
oraclelinuxOracleLinuxELSA-2024-1822
HistoryApr 23, 2024 - 12:00 a.m.

java-11-openjdk security update

2024-04-2300:00:00
linux.oracle.com
6
java security update
openjdk
oracle bug url
release notes
tzdata 2024a
embargoed release
rhel-30917
ea mode

3.7 Low

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N

4.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

20.8%

[1:11.0.23.0.9-3.0.1]

  • Add Oracle vendor bug URL [Orabug: 34340155]
    [1:11.0.23.0.9-2]
  • Fix 11.0.22 release date in NEWS
    [1:11.0.23.0.9-1]
  • Update to jdk-11.0.23+9 (GA)
  • Update release notes to 11.0.23+9
  • Switch to GA mode for release
  • Require tzdata 2024a due to upstream inclusion of JDK-8322725
  • Only require tzdata 2023d for now as 2024a is unavailable in buildroot
  • This tarball is embargoed until 2024-04-16 @ 1pm PT.
  • Resolves: RHEL-30920
    [1:11.0.23.0.1-0.1.ea]
  • Update to jdk-11.0.23+1 (EA)
  • Update release notes to 11.0.23+1
  • Switch to EA mode

3.7 Low

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N

4.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

20.8%