RHSA-2023:5745MediumCVSS 5.3

Red Hat Security Advisory: OpenJDK 17.0.9 Security Update for Portable Linux Builds

Published
October 18, 2023
Last Modified
August 19, 2026

🔗 CVE IDs covered (3)

CVE-2023-2004 · pendingCVE-2023-22025 →CVE-2023-22081 →

📋 Description

CVE-2023-2004 — freetype: integer overflowin in tt_hvadvance_adjust() in src/truetype/ttgxvar.c CVE-2023-22025 — OpenJDK: memory corruption issue on x86_64 with AVX-512 (8317121) CVE-2023-22081 — OpenJDK: certificate path validation issue during client authentication (8309966)

🎯 Affected products1

  • Red Hat Build of OpenJDK 17.0.9

✅ Remediation

For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258

🔗 References (6)