SUSE-SU-2019:1392-1
Dashboard / Vulnerabilities / SUSE-SU-2019:1392-1
SUSE-SU-2019:1392-1
Summary: Security update for java-1_7_0-openjdk
Details: This update for java-1_7_0-openjdk fixes the following issues: Update to 2.6.18 - OpenJDK 7u221 (April 2019 CPU) Security issues fixed: - CVE-2019-2602: Fixed flaw inside BigDecimal implementation (Component: Libraries) (bsc#1132728). - CVE-2019-2684: Fixed flaw inside the RMI registry implementation (bsc#1132732). - CVE-2019-2698: Fixed out of bounds access flaw in the 2D component (bsc#1132729). - CVE-2019-2422: Fixed memory disclosure in FileChannelImpl (bsc#1122293). - CVE-2018-11212: Fixed a Divide By Zero in alloc_sarray function in jmemmgr.c (bsc#1122299). - CVE-2019-2426: Improve web server connections (bsc#1134297). Bug fixes: - Please check the package Changelog for detailed information.
References: https://www.suse.com/support/update/announcement/2019/suse-su-20191392-1/, https://bugzilla.suse.com/1122293, https://bugzilla.suse.com/1122299, https://bugzilla.suse.com/1132728, https://bugzilla.suse.com/1132729, https://bugzilla.suse.com/1132732, https://bugzilla.suse.com/1134297, https://www.suse.com/security/cve/CVE-2018-11212, https://www.suse.com/security/cve/CVE-2019-2422, https://www.suse.com/security/cve/CVE-2019-2426, https://www.suse.com/security/cve/CVE-2019-2602, https://www.suse.com/security/cve/CVE-2019-2684, https://www.suse.com/security/cve/CVE-2019-2698
Affected packages
Package
Name: java-1_7_0-openjdk
Purl: pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20OpenStack%20Cloud%207
Affected ranges
Type: ECOSYSTEM
Events:
