SUSE-SU-2021:0670-1
Dashboard / Vulnerabilities / SUSE-SU-2021:0670-1
SUSE-SU-2021:0670-1
Summary: Security update for java-1_8_0-ibm
Details: This update for java-1_8_0-ibm fixes the following issues: - Update to Java 8.0 Service Refresh 6 Fix Pack 25 [bsc#1182186, bsc#1181239, CVE-2020-27221, CVE-2020-14803] * CVE-2020-27221: Potential for a stack-based buffer overflow when the virtual machine or JNI natives are converting from UTF-8 characters to platform encoding. * CVE-2020-14803: Unauthenticated attacker with network access via multiple protocols allows to compromise Java SE.
References: https://www.suse.com/support/update/announcement/2021/suse-su-20210670-1/, https://bugzilla.suse.com/1181239, https://bugzilla.suse.com/1182186, https://www.suse.com/security/cve/CVE-2020-14803, https://www.suse.com/security/cve/CVE-2020-27221
Affected packages
Package
Name: java-1_8_0-ibm
Purl: pkg:rpm/suse/java-1_8_0-ibm&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Legacy%2015%20SP2
Affected ranges
Type: ECOSYSTEM
Events:
