RHSA-2026:9686HighCVSS 7.5

Red Hat Security Advisory: java-17-openjdk security update

Published
April 24, 2026
Last Modified
May 29, 2026

🔗 CVE IDs covered (12)

📋 Description

CVE-2025-66293 — libpng: LIBPNG out-of-bounds read in png_image_read_composite CVE-2026-22007 — openjdk: Enhance crypto algorithm support (Oracle CPU 2026-04) CVE-2026-22013 — openjdk: Improve Kerberos credentialing (Oracle CPU 2026-04) CVE-2026-22016 — openjdk: Enhance Path Factories Redux (Oracle CPU 2026-04) CVE-2026-22018 — openjdk: Enhance Zip file reading (Oracle CPU 2026-04) CVE-2026-22020 — openjdk: Update LibPNG (Oracle CPU 2026-04) CVE-2026-22021 — openjdk: Enhance certificate chain validation (Oracle CPU 2026-04) CVE-2026-23865 — freetype: Information disclosure or denial of service via specially crafted font files CVE-2026-25646 — libpng: LIBPNG has a heap buffer overflow in png_set_quantize CVE-2026-26740 — giflib: giflib: Denial of Service via buffer overflow in EGifGCBToExtension CVE-2026-34268 — openjdk: Enhance key generation (Oracle CPU 2026-04) CVE-2026-34282 — openjdk: Enhance TLS connection handling (Oracle CPU 2026-04)

🔗 References (3)