java-1.8.0-openjdk-1.8.0.504.b01-1.2.el9.ML.1

エラータID: AXSA:2026-1740:18

Release date: 
Thursday, September 3, 2026 - 09:51
Subject: 
java-1.8.0-openjdk-1.8.0.504.b01-1.2.el9.ML.1
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
Moderate
Description: 

The java-1.8.0-openjdk packages provide the OpenJDK 8 Java Runtime Environment
and the OpenJDK 8 Java Software Development Kit.

Security Fix(es):

JDK: Improve Resource Resolving (CVE-2026-60589)
JDK: Enhance HTTP Connections (CVE-2026-61308)
JDK: Enhance TLS server (CVE-2026-70907)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s)
listed in the References section.

CVE(s):
CVE-2026-60589
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u501, 11.0.32, 17.0.20, 21.0.12, 25.0.4, 26.0.2; Oracle GraalVM for JDK: 17.0.20 and 21.0.12; Oracle GraalVM Enterprise Edition: 21.3.19. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.1 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).
CVE-2026-61308
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking). Supported versions that are affected are Oracle Java SE: 8u501, 11.0.32, 17.0.20, 21.0.12, 25.0.4, 26.0.2; Oracle GraalVM for JDK: 17.0.20 and 21.0.12; Oracle GraalVM Enterprise Edition: 21.3.19. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. While the vulnerability is in Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can be exploited by using APIs in the specified Component, e.g., through a web service which supplies data to the APIs. This vulnerability also applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. CVSS 3.1 Base Score 6.8 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N).
CVE-2026-70907
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 8u501, 11.0.32, 17.0.20, 21.0.12, 25.0.4, 26.0.2; Oracle GraalVM for JDK: 17.0.20 and 21.0.12; Oracle GraalVM Enterprise Edition: 21.3.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via TLS to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L).

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. java-1.8.0-openjdk-1.8.0.504.b01-1.2.el9.ML.1.src.rpm
    MD5: 470d5c525930e266b5559dfe6204cb73
    SHA-256: d17f167174ba24a9b5ea9754cee5240e704ff41b11e90d541d4583fe93e1905c
    Size: 58.55 MB

Asianux Server 9 for x86_64
  1. java-1.8.0-openjdk-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: 9d4d09f1218e7baed6de20e1e9a1610f
    SHA-256: e7fc5be6a6e148ee4585143d6c3b1aed92349023c47e0477815cbdc4cdacc17e
    Size: 422.02 kB
  2. java-1.8.0-openjdk-demo-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: c11bfa7ee10a0a8435a620db3440ccc8
    SHA-256: ed61d4e28284bfe79312a3e872b2a6d805e22d82fbb4ecd662a728e869b684de
    Size: 2.04 MB
  3. java-1.8.0-openjdk-demo-fastdebug-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: 22da547d3ad6a90643619838fa6f4a42
    SHA-256: c1ff9690a5bc6053da1eab272679d522fef8581ba44fd494b5ca4a25e5da0c43
    Size: 2.06 MB
  4. java-1.8.0-openjdk-demo-slowdebug-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: 45cf641a122429d62f5b61be677d6a0b
    SHA-256: 8dc260338919396200fba4a679639d948843face26d12249eed59a7aa79b3e42
    Size: 2.06 MB
  5. java-1.8.0-openjdk-devel-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: eaa2f1634e6053bb5e7c3848137d57df
    SHA-256: 9fff686eb1d09b61820cdd76a62c7759465858a4a4a80f9c68eb81fa0abda8a0
    Size: 9.35 MB
  6. java-1.8.0-openjdk-devel-fastdebug-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: 7ece5e0c1d14aafbbd69756a0fbf497b
    SHA-256: f1f53d0c2b5914069e09dbc997d1c591619ce3d0109cb87f0e3f43806d919637
    Size: 9.36 MB
  7. java-1.8.0-openjdk-devel-slowdebug-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: 49175cb8a186cc0abf550c43e2e478cd
    SHA-256: 4a8f63ebaf24ef768d3d436d56513c190bd47a6a7146d75a36c95ef7ddc559ff
    Size: 9.36 MB
  8. java-1.8.0-openjdk-fastdebug-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: e2a3fa80baca1105cff488869f1e6337
    SHA-256: 18ce8a8a43b8a09ec328dde07d05e9fd5c0763b68a10c4590ff9f55495c4f14b
    Size: 434.13 kB
  9. java-1.8.0-openjdk-headless-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: be4236f7fa863491e6195aac56f10813
    SHA-256: bd1543af8ea92e4cd8597bb924e13ed66b0fcb992fd8c99eb08e442c1c7ae5ec
    Size: 33.21 MB
  10. java-1.8.0-openjdk-headless-fastdebug-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: a8d49fffcffe9e1e2bd5a35eb722f1f5
    SHA-256: 220a1e6c66a28387cf5bdd448cf3f72adf17a20c7a6518b60b8ab7c46b896594
    Size: 36.96 MB
  11. java-1.8.0-openjdk-headless-slowdebug-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: 2b267b416ba69314350e747db0f88d62
    SHA-256: bfe8f153f852fdeea65c4e5e219d207de846deeafc1de7d83c697fdde650dfdd
    Size: 34.45 MB
  12. java-1.8.0-openjdk-javadoc-1.8.0.504.b01-1.2.el9.ML.1.noarch.rpm
    MD5: 4f3675691676ac879327e5c0ae545288
    SHA-256: 74028b32bba24b3d71f2d21965762ea513628247ec4eda750d264fdc7edaca1d
    Size: 14.45 MB
  13. java-1.8.0-openjdk-javadoc-zip-1.8.0.504.b01-1.2.el9.ML.1.noarch.rpm
    MD5: 7daa0690c8955f89882b2edcc67f1078
    SHA-256: 5705b3dffcc7b96ecad95a62e74fbd75c890444f2c144db799cb78b097fb7325
    Size: 40.80 MB
  14. java-1.8.0-openjdk-slowdebug-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: 027455ea2b980f784bd027df399ec61d
    SHA-256: 19514839dda6dfe376ac0e9f43dacfcbaed27552072ad19892bd1f7e77f114f7
    Size: 410.23 kB
  15. java-1.8.0-openjdk-src-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: cabcf306bbc722380c563fd6b34aa789
    SHA-256: b38bb079a63193df3411b531a3996e65edf4d64fd13b92042912aad1e5f47f2b
    Size: 44.67 MB
  16. java-1.8.0-openjdk-src-fastdebug-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: 9a4210aa3d7384b83af293b07286e4d8
    SHA-256: e6d65ecc0cc0ae89fba2e7b509f5c3263fdaf3ba67a5813d9f6acdc32a9ede6a
    Size: 44.67 MB
  17. java-1.8.0-openjdk-src-slowdebug-1.8.0.504.b01-1.2.el9.ML.1.x86_64.rpm
    MD5: 7490069663ab42cca59c012fba02bf03
    SHA-256: f9fbacca3ef3327d76680e7fa1ad7b485ac2375bb2abb9b81465dd17fda3c6dc
    Size: 44.67 MB