CLSA-2023-1675986440

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2023-1675986440.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2023-1675986440
Upstream
Published
2023-02-09T23:47:20Z
Modified
2026-06-01T00:33:24.668978497Z
Summary
java-1.8.0-openjdk: Fix of 2 CVEs
Details
  • Upgrade to openjdk-shenandoah-jdk8u-shenandoah-jdk8u362-b09. That fixes following CVEs:
  • CVE-2023-21830: Improper restrictions in CORBA deserialization (Serialization, 8285021)
  • CVE-2023-21843: Soundbank URL remote loading (Sound, 8293742)
  • Update tzdata requirement to 2022g to match JDK-8297804
  • Remove patches which are in upstream now
  • Remove the obsolete rh1163501 patch
References

Affected packages

TuxCare:OracleLinux:6
java-1.8.0-openjdk

Package

Name
java-1.8.0-openjdk
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.362.b09-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2023-1675986440.json"
java-1.8.0-openjdk-debug

Package

Name
java-1.8.0-openjdk-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-debug?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.362.b09-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2023-1675986440.json"
java-1.8.0-openjdk-demo

Package

Name
java-1.8.0-openjdk-demo
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-demo?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.362.b09-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2023-1675986440.json"
java-1.8.0-openjdk-demo-debug

Package

Name
java-1.8.0-openjdk-demo-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-demo-debug?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.362.b09-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2023-1675986440.json"
java-1.8.0-openjdk-devel

Package

Name
java-1.8.0-openjdk-devel
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-devel?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.362.b09-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2023-1675986440.json"
java-1.8.0-openjdk-devel-debug

Package

Name
java-1.8.0-openjdk-devel-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-devel-debug?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.362.b09-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2023-1675986440.json"
java-1.8.0-openjdk-headless

Package

Name
java-1.8.0-openjdk-headless
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-headless?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.362.b09-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2023-1675986440.json"
java-1.8.0-openjdk-headless-debug

Package

Name
java-1.8.0-openjdk-headless-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-headless-debug?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.362.b09-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2023-1675986440.json"
java-1.8.0-openjdk-javadoc

Package

Name
java-1.8.0-openjdk-javadoc
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-javadoc?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.362.b09-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2023-1675986440.json"
java-1.8.0-openjdk-javadoc-debug

Package

Name
java-1.8.0-openjdk-javadoc-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-javadoc-debug?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.362.b09-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2023-1675986440.json"
java-1.8.0-openjdk-src

Package

Name
java-1.8.0-openjdk-src
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-src?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.362.b09-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2023-1675986440.json"
java-1.8.0-openjdk-src-debug

Package

Name
java-1.8.0-openjdk-src-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-src-debug?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.362.b09-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2023-1675986440.json"