Red Hat Security Advisory: java-1.8.0-openjdk security update
🔗 CVE IDs covered (10)
📋 Description
CVE-2026-41254 — Little CMS: lcms2: mm2/Little-CMS: Little CMS: Information disclosure or denial of service via integer overflow in CubeSize CVE-2026-46968 — openjdk: Enhance TLS certificate handling (Oracle CPU 2026-07) CVE-2026-47010 — openjdk: Enhance JPEG handling (Oracle CPU 2026-07) CVE-2026-47021 — openjdk: Enhance XBM image support (Oracle CPU 2026-07) CVE-2026-47027 — openjdk: Enhance Jar file processing (Oracle CPU 2026-07) CVE-2026-47057 — openjdk: Improve Nashorn index handling (Oracle CPU 2026-07) CVE-2026-47058 — openjdk: Enhance Dataview Implementation (Oracle CPU 2026-07) CVE-2026-47059 — openjdk: Enhance AWT ImagingLib (Oracle CPU 2026-07) CVE-2026-47063 — openjdk: Enhance Jar handling (Oracle CPU 2026-07) CVE-2026-60147 — openjdk: Improve certification checking (Oracle CPU 2026-07)
🎯 Affected products45
- Red Hat Enterprise Linux Server (v. 7 ELS)
- Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-1:1.8.0.502.b07-1.1.el7_9.i686 as a component of Red Hat Enterprise Linux Server (v. 7 ELS)
- java-1.8.0-openjdk-1:1.8.0.502.b07-1.1.el7_9.ppc64 as a component of Red Hat Enterprise Linux Server (v. 7 ELS)
- java-1.8.0-openjdk-1:1.8.0.502.b07-1.1.el7_9.ppc64le as a component of Red Hat Enterprise Linux Server (v. 7 ELS)
- java-1.8.0-openjdk-1:1.8.0.502.b07-1.1.el7_9.s390x as a component of Red Hat Enterprise Linux Server (v. 7 ELS)
- java-1.8.0-openjdk-1:1.8.0.502.b07-1.1.el7_9.src as a component of Red Hat Enterprise Linux Server (v. 7 ELS)
- java-1.8.0-openjdk-1:1.8.0.502.b07-1.1.el7_9.x86_64 as a component of Red Hat Enterprise Linux Server (v. 7 ELS)
- java-1.8.0-openjdk-accessibility-1:1.8.0.502.b07-1.1.el7_9.i686 as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-accessibility-1:1.8.0.502.b07-1.1.el7_9.ppc64 as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-accessibility-1:1.8.0.502.b07-1.1.el7_9.ppc64le as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-accessibility-1:1.8.0.502.b07-1.1.el7_9.s390x as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-accessibility-1:1.8.0.502.b07-1.1.el7_9.x86_64 as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-debuginfo-1:1.8.0.502.b07-1.1.el7_9.i686 as a component of Red Hat Enterprise Linux Server (v. 7 ELS)
- java-1.8.0-openjdk-debuginfo-1:1.8.0.502.b07-1.1.el7_9.i686 as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-debuginfo-1:1.8.0.502.b07-1.1.el7_9.ppc64 as a component of Red Hat Enterprise Linux Server (v. 7 ELS)
- java-1.8.0-openjdk-debuginfo-1:1.8.0.502.b07-1.1.el7_9.ppc64 as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-debuginfo-1:1.8.0.502.b07-1.1.el7_9.ppc64le as a component of Red Hat Enterprise Linux Server (v. 7 ELS)
- java-1.8.0-openjdk-debuginfo-1:1.8.0.502.b07-1.1.el7_9.ppc64le as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-debuginfo-1:1.8.0.502.b07-1.1.el7_9.s390x as a component of Red Hat Enterprise Linux Server (v. 7 ELS)
- java-1.8.0-openjdk-debuginfo-1:1.8.0.502.b07-1.1.el7_9.s390x as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-debuginfo-1:1.8.0.502.b07-1.1.el7_9.x86_64 as a component of Red Hat Enterprise Linux Server (v. 7 ELS)
- java-1.8.0-openjdk-debuginfo-1:1.8.0.502.b07-1.1.el7_9.x86_64 as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-demo-1:1.8.0.502.b07-1.1.el7_9.i686 as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-demo-1:1.8.0.502.b07-1.1.el7_9.ppc64 as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-demo-1:1.8.0.502.b07-1.1.el7_9.ppc64le as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-demo-1:1.8.0.502.b07-1.1.el7_9.s390x as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-demo-1:1.8.0.502.b07-1.1.el7_9.x86_64 as a component of Red Hat Enterprise Linux Server Optional (v. 7 ELS)
- java-1.8.0-openjdk-devel-1:1.8.0.502.b07-1.1.el7_9.i686 as a component of Red Hat Enterprise Linux Server (v. 7 ELS)
- java-1.8.0-openjdk-devel-1:1.8.0.502.b07-1.1.el7_9.ppc64 as a component of Red Hat Enterprise Linux Server (v. 7 ELS)
- +15 more not shown
✅ Remediation
Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258 Workaround: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
🔗 References (13)
- selfhttps://access.redhat.com/errata/RHSA-2026:42876
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2459420
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2502751
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2502783
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2502784
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2502791
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2502792
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2502793
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2502794
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2502795
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2503636
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_42876.json