RHSA-2021:2845HighCVSS 7.5
Red Hat Security Advisory: java-1.8.0-openjdk security and bug fix update
🔗 CVE IDs covered (3)
📋 Description
CVE-2021-2341 — OpenJDK: FTP PASV command response can cause FtpClient to connect to arbitrary host (Networking, 8258432) CVE-2021-2369 — OpenJDK: Incorrect verification of JAR files with multiple MANIFEST.MF files (Library, 8260967) CVE-2021-2388 — OpenJDK: Incorrect comparison during range check elimination (Hotspot, 8264066)
🔗 References (8)
- selfhttps://access.redhat.com/errata/RHSA-2021:2845
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1960024
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1967809
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1982874
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1982879
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1983075
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2021/rhsa-2021_2845.json