MGASA-2019-0155
Dashboard / Vulnerabilities / MGASA-2019-0155
MGASA-2019-0155
Summary: Updated java-1.8.0-openjdk packages fix security vulnerability
Details: The updated packages fix several bugs and some security issues: Font layout engine out of bounds access setCurrGlyphID(). (CVE-2019-2698) Slow conversion of BigDecimal to long. (CVE-2019-2602) Incorrect skeleton selection in RMI registry server-side dispatch handling. (CVE-2019-2684)
References: https://advisories.mageia.org/MGASA-2019-0155.html, https://bugs.mageia.org/show_bug.cgi?id=24682, https://access.redhat.com/errata/RHSA-2019:0775, https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html#AppendixJAVA
Affected packages
Package
Name: java-1.8.0-openjdk
Purl: pkg:rpm/mageia/java-1.8.0-openjdk?arch=source&distro=mageia-6
Affected ranges
Type: ECOSYSTEM
Events:
