java-1.8.0-openjdk-1.8.0.504.b01-1.1.el8

エラータID: AXSA:2026-1656:16

Release date: 
Wednesday, August 26, 2026 - 15:50
Subject: 
java-1.8.0-openjdk-1.8.0.504.b01-1.1.el8
Affected Channels: 
Asianux Server 8 for x86_64
Severity: 
Moderate
Description: 

The java-1.8.0-openjdk packages provide the OpenJDK 8 Java Runtime Environment
and the OpenJDK 8 Java Software Development Kit.

Security Fix(es):

JDK: Improve Resource Resolving (CVE-2026-60589)
JDK: Enhance HTTP Connections (CVE-2026-61308)
JDK: Enhance TLS server (CVE-2026-70907)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s)
listed in the References section.

CVE(s):
CVE-2026-60589
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u501, 11.0.32, 17.0.20, 21.0.12, 25.0.4, 26.0.2; Oracle GraalVM for JDK: 17.0.20 and 21.0.12; Oracle GraalVM Enterprise Edition: 21.3.19. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.1 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).
CVE-2026-61308
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking). Supported versions that are affected are Oracle Java SE: 8u501, 11.0.32, 17.0.20, 21.0.12, 25.0.4, 26.0.2; Oracle GraalVM for JDK: 17.0.20 and 21.0.12; Oracle GraalVM Enterprise Edition: 21.3.19. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. While the vulnerability is in Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 6.8 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N).
CVE-2026-70907
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 8u501, 11.0.32, 17.0.20, 21.0.12, 25.0.4, 26.0.2; Oracle GraalVM for JDK: 17.0.20 and 21.0.12; Oracle GraalVM Enterprise Edition: 21.3.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via TLS to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L).

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. java-1.8.0-openjdk-1.8.0.504.b01-1.1.el8.src.rpm
    MD5: 6269a62acdebb97e2ae05958675288e4
    SHA-256: 3fb1087096a4c29a28627e7b409ba904363c6487f2ce9ddfe962fbcbc6919f6b
    Size: 58.65 MB

Asianux Server 8 for x86_64
  1. java-1.8.0-openjdk-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: 4d329bd48a09da33118f838b0d32d16a
    SHA-256: 316221c9cfd2a4c1f897a394c57a6e1d888e00a0bef78e3817b4647b901d916c
    Size: 564.52 kB
  2. java-1.8.0-openjdk-accessibility-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: 6ab13365d8cb54d00ba33c85dbd4c24a
    SHA-256: 492e1b42cfcf4ea1bcb767c25daa4eb063aa51d62c10fb00047463e3aa0e1c79
    Size: 134.95 kB
  3. java-1.8.0-openjdk-accessibility-fastdebug-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: 59ff0f74aacd951dc6bf7bdaad2a3255
    SHA-256: 2dbb781532d71cee2161603c82f68b07e5bdcf0c5a83fab71f7bde596da05d24
    Size: 134.79 kB
  4. java-1.8.0-openjdk-accessibility-slowdebug-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: d6fffd6df141b6724e9f8bedd67c027b
    SHA-256: a968bb020c4c5db4321fbe81fa9a11bd5aa0c5770b10145ffb5ce105ed52a6e1
    Size: 134.79 kB
  5. java-1.8.0-openjdk-demo-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: 2abcc92d57675d8178df067fa3bdd367
    SHA-256: 50441b3c982702b4a503f32de7f80635efac4abe2ece02a36ce9337453e98b62
    Size: 2.10 MB
  6. java-1.8.0-openjdk-demo-fastdebug-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: c94da2616163db625c631a62206a2f42
    SHA-256: 1089a769782972bf1e8267723d7bc79aa962a0c0bd7376e05e6f7e8d4940cfdc
    Size: 2.12 MB
  7. java-1.8.0-openjdk-demo-slowdebug-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: fa24f927de5c0893f5bd01974d646ddb
    SHA-256: afdc6d3d86755bd54b78fd66cc501d63c1b19b1025dcc1996b1dd4ad464598bc
    Size: 2.12 MB
  8. java-1.8.0-openjdk-devel-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: 24afc53df88e6704d33d3d0a774322d7
    SHA-256: d2e5bde33aa140997ea873aba68cc61f901611dd79a3f915f4c481e2dcacf35e
    Size: 9.98 MB
  9. java-1.8.0-openjdk-devel-fastdebug-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: 5795a8ba6207c4af0730432fcae08ccd
    SHA-256: 2c9959350e6f4a07015d57df56d78f1dc28dda4e6e51a2434bfb13e44001d4a6
    Size: 9.98 MB
  10. java-1.8.0-openjdk-devel-slowdebug-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: 9158391ba237d66fc14e72c28da06729
    SHA-256: b3dd305f79f10a1df0030192f1b895648b4322b22e67f598a782e4e687516b04
    Size: 9.98 MB
  11. java-1.8.0-openjdk-fastdebug-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: 136886694b3576c8780683f1eeec9450
    SHA-256: c9e30ebbe653299a77028f7eb618a1072d9d6fd97781bf5af0df81953736db74
    Size: 577.69 kB
  12. java-1.8.0-openjdk-headless-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: 7f2fd3ed6342539ff1d8d97a87c1ff71
    SHA-256: b1e93bf11ac80a4a2ff36857a7d07176dbfa2dfac1a17a9e68775d24b9a615d0
    Size: 34.94 MB
  13. java-1.8.0-openjdk-headless-fastdebug-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: e8750e601e9a28e6ae75fe5a158d660a
    SHA-256: adf494a88fdb3588c60f0fcb9bd8e410399a5db1af0a442516d13b3b43e1ee96
    Size: 38.59 MB
  14. java-1.8.0-openjdk-headless-slowdebug-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: 522bebaf6dc89dee6aca00e1f21c5f14
    SHA-256: cba422c108f01d5d41f490e3d985953aa8a27d71a1f9fa3cc300dd1a976611e1
    Size: 36.78 MB
  15. java-1.8.0-openjdk-javadoc-1.8.0.504.b01-1.1.el8.noarch.rpm
    MD5: a8c102989c0003ca42b43603530e82a0
    SHA-256: 1166c291e5cbb5d804cb875c39c571ea74589ffd1f9f23514ce84598b3dd262e
    Size: 15.21 MB
  16. java-1.8.0-openjdk-javadoc-zip-1.8.0.504.b01-1.1.el8.noarch.rpm
    MD5: 662e3b9dd2e236629137646d1e98e320
    SHA-256: 4af79efe621a3db424eb9a91534acf20bb2c47d9c52a0c18f2453e669d9f1d1f
    Size: 41.71 MB
  17. java-1.8.0-openjdk-slowdebug-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: bd60ca726b164039dfef77ad78597b28
    SHA-256: b342e1c612e063eae5a8eb8ad31cf7d7bd7eddfd13f34c0d9b39580f5b5d31aa
    Size: 554.08 kB
  18. java-1.8.0-openjdk-src-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: 8631ecea3e0b2a2313576abeb8131b85
    SHA-256: f8053bd24059871a198fbe7ec0e886bf2d47ccbc5d1c3409cfeddcc00a78d31b
    Size: 45.55 MB
  19. java-1.8.0-openjdk-src-fastdebug-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: 5957c09ba933309dc408d027b4375df1
    SHA-256: 7124b9a5980e53bf2729a48b3b4b4760388aa432402e35a9e6f2ff34638e6ba1
    Size: 45.56 MB
  20. java-1.8.0-openjdk-src-slowdebug-1.8.0.504.b01-1.1.el8.x86_64.rpm
    MD5: a373e4f12f2350a1ce05b8ff1e122cee
    SHA-256: 93fa12c25f95c6c5425900a5eb0aad76a2a5dc934f17e87a3f8bed8c7739430b
    Size: 45.56 MB