RHSA-2023:0388MediumCVSS 5.3
Red Hat Security Advisory: OpenJDK 11.0.18 Security Update for Portable Linux Builds
🔗 CVE IDs covered (2)
📋 Description
CVE-2023-21835 — OpenJDK: handshake DoS attack against DTLS connections (JSSE, 8287411) CVE-2023-21843 — OpenJDK: soundbank URL remote loading (Sound, 8293742)
🎯 Affected products1
- Red Hat Build of OpenJDK 11.0.18
✅ Remediation
Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/documentation/en-us/openjdk/11/html/installing_and_using_openjdk_11_on_rhel/installing-openjdk11-on-rhel8#installing-jdk11-on-rhel-using-archive_openjdk
🔗 References (5)
- selfhttps://access.redhat.com/errata/RHSA-2023:0388
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2160421
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2160475
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_0388.json