RHSA-2015:0809High
Red Hat Security Advisory: java-1.8.0-openjdk security update
🔗 CVE IDs covered (8)
📋 Description
CVE-2005-1080 — jar: directory traversal vulnerability CVE-2015-0460 — OpenJDK: incorrect handling of phantom references (Hotspot, 8071931) CVE-2015-0469 — ICU: layout engine glyphStorage off-by-one (OpenJDK 2D, 8067699) CVE-2015-0470 — OpenJDK: incorrect handling of default methods (Hotspot, 8065366) CVE-2015-0477 — OpenJDK: incorrect permissions check in resource loading (Beans, 8068320) CVE-2015-0478 — OpenJDK: insufficient hardening of RSA-CRT implementation (JCE, 8071726) CVE-2015-0480 — OpenJDK: jar directory traversal issues (Tools, 8064601) CVE-2015-0488 — OpenJDK: certificate options parsing uncaught exception (JSSE, 8068720)
🔗 References (11)
- selfhttps://access.redhat.com/errata/RHSA-2015:0809
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=606442
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1210355
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1210829
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1211285
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1211299
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1211387
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1211504
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1211543
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2015/rhsa-2015_0809.json