CLSA-2024-1726058957

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2024-1726058957.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2024-1726058957
Upstream
Published
2024-09-11T12:49:21Z
Modified
2026-06-01T00:33:25.868658799Z
Summary
java-1.8.0-openjdk: Fix of 6 CVEs
Details
  • Upgrade to openjdk-shenandoah-jdk8u-shenandoah-jdk8u422-b05. That fixes following CVEs:
  • CVE-2024-21131: UTF8 size overflow
  • CVE-2024-21138: Infinite loop vunlerability in SymbolTable
  • CVE-2024-21140: Int overflow/underflow in Range Check Elimination (RCE)
  • CVE-2024-21144: Invalid header validation leads to Pack200 excessive loading time
  • CVE-2024-21145: Out-of-bounds access in MaskFill
  • CVE-2024-21147: Out-of-bounds array index in Range Check Elimination (RCE)
References

Affected packages

TuxCare:OracleLinux:6
java-1.8.0-openjdk

Package

Name
java-1.8.0-openjdk
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2024-1726058957.json"
java-1.8.0-openjdk-debug

Package

Name
java-1.8.0-openjdk-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-debug?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2024-1726058957.json"
java-1.8.0-openjdk-demo

Package

Name
java-1.8.0-openjdk-demo
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-demo?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2024-1726058957.json"
java-1.8.0-openjdk-demo-debug

Package

Name
java-1.8.0-openjdk-demo-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-demo-debug?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2024-1726058957.json"
java-1.8.0-openjdk-devel

Package

Name
java-1.8.0-openjdk-devel
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-devel?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2024-1726058957.json"
java-1.8.0-openjdk-devel-debug

Package

Name
java-1.8.0-openjdk-devel-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-devel-debug?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2024-1726058957.json"
java-1.8.0-openjdk-headless

Package

Name
java-1.8.0-openjdk-headless
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-headless?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2024-1726058957.json"
java-1.8.0-openjdk-headless-debug

Package

Name
java-1.8.0-openjdk-headless-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-headless-debug?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2024-1726058957.json"
java-1.8.0-openjdk-javadoc

Package

Name
java-1.8.0-openjdk-javadoc
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-javadoc?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2024-1726058957.json"
java-1.8.0-openjdk-javadoc-debug

Package

Name
java-1.8.0-openjdk-javadoc-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-javadoc-debug?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2024-1726058957.json"
java-1.8.0-openjdk-src

Package

Name
java-1.8.0-openjdk-src
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-src?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2024-1726058957.json"
java-1.8.0-openjdk-src-debug

Package

Name
java-1.8.0-openjdk-src-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-src-debug?distro=oraclelinux-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el6.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux6els/CLSA-2024-1726058957.json"