RHSA-2022:5758HighCVSS 7.5
Red Hat Security Advisory: OpenJDK 17.0.4 Security Update for Portable Linux Builds
🔗 CVE IDs covered (4)
📋 Description
CVE-2022-21540 — OpenJDK: class compilation issue (Hotspot, 8281859) CVE-2022-21541 — OpenJDK: improper restriction of MethodHandle.invokeBasic() (Hotspot, 8281866) CVE-2022-21549 — OpenJDK: random exponentials issue (Libraries, 8283875) CVE-2022-34169 — OpenJDK: integer truncation issue in Xalan-J (JAXP, 8285407)
🎯 Affected products1
- Red Hat Build of OpenJDK 17.0.4
✅ Remediation
Before applying this update, make sure all previously-released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/documentation/en-us/openjdk/17/html/installing_and_using_openjdk_17_on_rhel/installing-openjdk11-on-rhel8_openjdk#installing-jdk11-on-rhel-using-archive_openjdk
🔗 References (7)
- selfhttps://access.redhat.com/errata/RHSA-2022:5758
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2108540
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2108543
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2108547
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2108554
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_5758.json