Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
RHSA-2026:42876
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2026:42876
Import Source
https://security.access.redhat.com/data/osv/RHSA-2026:42876.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2026:42876
Upstream
CVE-2026-41254
CVE-2026-46968
CVE-2026-47010
CVE-2026-47021
CVE-2026-47027
CVE-2026-47057
CVE-2026-47058
CVE-2026-47059
CVE-2026-47063
CVE-2026-60147
Published
2026-07-24T10:10:21Z
Modified
2026-07-28T10:13:00Z
Severity
7.5 (High)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
CVSS Calculator
Summary
Red Hat Security Advisory: java-1.8.0-openjdk security update
Details
References
https://access.redhat.com/errata/RHSA-2026:42876
https://access.redhat.com/security/updates/classification/#important
https://bugzilla.redhat.com/show_bug.cgi?id=2459420
https://bugzilla.redhat.com/show_bug.cgi?id=2502751
https://bugzilla.redhat.com/show_bug.cgi?id=2502783
https://bugzilla.redhat.com/show_bug.cgi?id=2502784
https://bugzilla.redhat.com/show_bug.cgi?id=2502791
https://bugzilla.redhat.com/show_bug.cgi?id=2502792
https://bugzilla.redhat.com/show_bug.cgi?id=2502793
https://bugzilla.redhat.com/show_bug.cgi?id=2502794
https://bugzilla.redhat.com/show_bug.cgi?id=2502795
https://bugzilla.redhat.com/show_bug.cgi?id=2503636
https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_42876.json
https://access.redhat.com/security/cve/CVE-2026-41254
https://www.cve.org/CVERecord?id=CVE-2026-41254
https://nvd.nist.gov/vuln/detail/CVE-2026-41254
https://abhinavagarwal07.github.io/posts/lcms2-cubesize-overflow/
https://github.com/mm2/Little-CMS/commit/da6110b1d14abc394633a388209abd5ebedd7ab0
https://github.com/mm2/Little-CMS/commit/e0641b1828d0a1af5ecb1b11fe22f24fceefd4bc
https://github.com/mm2/Little-CMS/security/advisories/GHSA-4xp6-rcgg-m9qq
https://www.openwall.com/lists/oss-security/2026/04/17/16
https://access.redhat.com/security/cve/CVE-2026-46968
https://www.cve.org/CVERecord?id=CVE-2026-46968
https://nvd.nist.gov/vuln/detail/CVE-2026-46968
https://access.redhat.com/security/cve/CVE-2026-47010
https://www.cve.org/CVERecord?id=CVE-2026-47010
https://nvd.nist.gov/vuln/detail/CVE-2026-47010
https://access.redhat.com/security/cve/CVE-2026-47021
https://www.cve.org/CVERecord?id=CVE-2026-47021
https://nvd.nist.gov/vuln/detail/CVE-2026-47021
https://access.redhat.com/security/cve/CVE-2026-47027
https://www.cve.org/CVERecord?id=CVE-2026-47027
https://nvd.nist.gov/vuln/detail/CVE-2026-47027
https://access.redhat.com/security/cve/CVE-2026-47057
https://www.cve.org/CVERecord?id=CVE-2026-47057
https://nvd.nist.gov/vuln/detail/CVE-2026-47057
https://access.redhat.com/security/cve/CVE-2026-47058
https://www.cve.org/CVERecord?id=CVE-2026-47058
https://nvd.nist.gov/vuln/detail/CVE-2026-47058
https://access.redhat.com/security/cve/CVE-2026-47059
https://www.cve.org/CVERecord?id=CVE-2026-47059
https://nvd.nist.gov/vuln/detail/CVE-2026-47059
https://access.redhat.com/security/cve/CVE-2026-47063
https://www.cve.org/CVERecord?id=CVE-2026-47063
https://nvd.nist.gov/vuln/detail/CVE-2026-47063
https://access.redhat.com/security/cve/CVE-2026-60147
https://www.cve.org/CVERecord?id=CVE-2026-60147
https://nvd.nist.gov/vuln/detail/CVE-2026-60147
Affected packages
Red Hat:rhel_els:7
java-1.8.0-openjdk
Package
Name
java-1.8.0-openjdk
Purl
pkg:rpm/redhat/java-1.8.0-openjdk
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.502.b07-1.1.el7_9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42876.json"
java-1.8.0-openjdk-debuginfo
Package
Name
java-1.8.0-openjdk-debuginfo
Purl
pkg:rpm/redhat/java-1.8.0-openjdk-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.502.b07-1.1.el7_9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42876.json"
java-1.8.0-openjdk-devel
Package
Name
java-1.8.0-openjdk-devel
Purl
pkg:rpm/redhat/java-1.8.0-openjdk-devel
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.502.b07-1.1.el7_9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42876.json"
java-1.8.0-openjdk-headless
Package
Name
java-1.8.0-openjdk-headless
Purl
pkg:rpm/redhat/java-1.8.0-openjdk-headless
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.502.b07-1.1.el7_9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42876.json"
java-1.8.0-openjdk-accessibility
Package
Name
java-1.8.0-openjdk-accessibility
Purl
pkg:rpm/redhat/java-1.8.0-openjdk-accessibility
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.502.b07-1.1.el7_9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42876.json"
java-1.8.0-openjdk-demo
Package
Name
java-1.8.0-openjdk-demo
Purl
pkg:rpm/redhat/java-1.8.0-openjdk-demo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.502.b07-1.1.el7_9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42876.json"
java-1.8.0-openjdk-javadoc
Package
Name
java-1.8.0-openjdk-javadoc
Purl
pkg:rpm/redhat/java-1.8.0-openjdk-javadoc
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.502.b07-1.1.el7_9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42876.json"
java-1.8.0-openjdk-javadoc-zip
Package
Name
java-1.8.0-openjdk-javadoc-zip
Purl
pkg:rpm/redhat/java-1.8.0-openjdk-javadoc-zip
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.502.b07-1.1.el7_9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42876.json"
java-1.8.0-openjdk-src
Package
Name
java-1.8.0-openjdk-src
Purl
pkg:rpm/redhat/java-1.8.0-openjdk-src
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.502.b07-1.1.el7_9
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:42876.json"
RHSA-2026:42876 - OSV