CESA-2023:1904 -- centos 7 java-1.8.0-openjdkID: oval:org.secpod.oval:def:206032 | Date: (C)2023-08-03 (M)2024-06-27 |
Class: PATCH | Family: unix |
Security Fix: OpenJDK: improper connection handling during TLS handshake OpenJDK: Swing HTML parsing issue OpenJDK: incorrect enqueue of references in garbage collector OpenJDK: certificate validation issue in TLS session negotiation OpenJDK: missing string checks for NULL characters OpenJDK: incorrect handling of NULL characters in ProcessBuilder OpenJDK: missing check for slash characters in URI-to-path conversion For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Bug Fix:
Product: |
java-1.8.0-openjdk |