java-11-openjdk-11.0.21.0.9-2.el9.ML.1
エラータID: AXSA:2023-6542:22
リリース日:
2023/10/24 Tuesday - 07:25
題名:
java-11-openjdk-11.0.21.0.9-2.el9.ML.1
影響のあるチャネル:
MIRACLE LINUX 9 for x86_64
Severity:
Moderate
Description:
以下項目について対処しました。
[Security Fix]
- Java の JSSE コンポーネントには、リモートの攻撃者により、
HTTPS 経由でのネットワークアクセスを介して、部分的なサービス
拒否攻撃を可能とする脆弱性が存在します。(CVE-2023-22081)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2023-22081
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK product of Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 8u381, 8u381-perf, 11.0.20, 17.0.8, 21; Oracle GraalVM for JDK: 17.0.8 and 21. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Java SE, Oracle GraalVM for JDK. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM for JDK. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L).
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK product of Oracle Java SE (component: JSSE). Supported versions that are affected are Oracle Java SE: 8u381, 8u381-perf, 11.0.20, 17.0.8, 21; Oracle GraalVM for JDK: 17.0.8 and 21. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Java SE, Oracle GraalVM for JDK. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Java SE, Oracle GraalVM for JDK. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L).
追加情報:
N/A
ダウンロード:
SRPMS
- java-11-openjdk-11.0.21.0.9-2.el9.ML.1.src.rpm
MD5: af9cb6c8151e0d6ccb7ff94504b40fb3
SHA-256: 21d49cf84196d531edb5e904f9e8d1aadf2d5c050c7784188918fe0c4ea698bb
Size: 68.34 MB
Asianux Server 9 for x86_64
- java-11-openjdk-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: 9de11d416e2f0d3ae5a7a8c9452565cc
SHA-256: b6462c0ba9d30dae765ce7da93c5e404edc7ed3f768199ca70fd837d86c2b5d2
Size: 437.81 kB - java-11-openjdk-demo-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: 071d96b0b078af9276639c71a530b83a
SHA-256: e780bf59cdb4307a085bdd0f4d1968991ab2eb69173c2f8f0d7bbf4821682a5d
Size: 4.32 MB - java-11-openjdk-demo-fastdebug-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: 9a494bd1283436bad5bceac41f1b0344
SHA-256: 661d91c7329776dc4b5169915f082838bec19b8c0ffdc278fa7a75453ed0015c
Size: 4.32 MB - java-11-openjdk-demo-slowdebug-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: 64e37d4c0314bedcba3761021639d452
SHA-256: 45e8bb4e5cbbbf4dbf93520b69b53454fcebe4ad8c9178e2b91c38f254617582
Size: 4.32 MB - java-11-openjdk-devel-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: 92072946ea4b0e4a560ae32e01c21721
SHA-256: 821977d4c27adbb76546885165ec8ea5c35ca8346e36dbefc5eeb159640cd58b
Size: 3.29 MB - java-11-openjdk-devel-fastdebug-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: ba3692667d9655be1834b86fd0517278
SHA-256: 52fa5c02df0ae7dc6edea0743e6ee992a434eb91f412b31d005afa660e069775
Size: 3.29 MB - java-11-openjdk-devel-slowdebug-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: d5bc582444823ac91a9fe83a6fefd14e
SHA-256: a6bef672c0cc4d527843c41e007f1cb1533bb57ae7db2aa1ea4fe65e36e90abb
Size: 3.29 MB - java-11-openjdk-fastdebug-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: bac095c7ef80cd9b128960643340160b
SHA-256: f0224a70d4c9df4410c92359e456da50f8c2e359f168c7a61fadf50647d9711b
Size: 450.13 kB - java-11-openjdk-headless-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: 1efd9eb0afc1228cbfc921c5a81f15a3
SHA-256: 152299aee57e82a18079c6e8ba1d963b06795fe5339e77ca4ea531c1ff9e43e9
Size: 39.75 MB - java-11-openjdk-headless-fastdebug-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: 427fc21affdf3a72f20b0e448dda9f41
SHA-256: 99c4af84dcd0cfd6315dd2ba08e3efb5e95b869f8975b2ab0a42823287115726
Size: 45.30 MB - java-11-openjdk-headless-slowdebug-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: b3663a16b31e7a8356e59f490a6400f3
SHA-256: 182132e956f7e3c34dd1e60b78cfbfaed5e7755538b075bacad3a213a7ef45e2
Size: 44.27 MB - java-11-openjdk-javadoc-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: f1d669e58169b9fd888a1abbec7a0c65
SHA-256: ff3dbb6f4c65de51932eb504767c60fef5c103b8ef7fed67277c90c1e2cfc246
Size: 12.61 MB - java-11-openjdk-javadoc-zip-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: 3992cbfeb09b8aa24c196620a97f506e
SHA-256: 4205279891fb9d0f52ca56c0a93fbc376a719ee8a5b59c96b73e0e85824634b2
Size: 41.10 MB - java-11-openjdk-jmods-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: b2b254348b1a251171e0db266e495d8d
SHA-256: c230e0d9cc4d0a0d81921145639f2d67be5c84c3e9baadf6a6bf76d839ecb8a6
Size: 323.41 MB - java-11-openjdk-jmods-fastdebug-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: 43886c517a9d222b9f8f3597cefc51f8
SHA-256: 8066d3f51c04b19ed5c56d5525686a2ac9db0858c374d5a15bf177c0374f4301
Size: 284.28 MB - java-11-openjdk-jmods-slowdebug-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: c0950d2fc5aeafb6bdb1dc86a27ac97a
SHA-256: edb9063ae30576319c723f0690d002c8f4689f82101874749459400e3cf4d3aa
Size: 211.64 MB - java-11-openjdk-slowdebug-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: b18b3f2dd367ad82349d0bc16f1a5fec
SHA-256: 4d3d9fec98f3bf0ba2804c1e16b9763e6e582b1db495334604932a3c1745ab0d
Size: 421.73 kB - java-11-openjdk-src-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: da28a7fa4bd4e564fbecfeeaa5decefe
SHA-256: 9b9627ad0a7e04038a904167427f5abe2213eb4f9937848dd4fecd539f982243
Size: 49.70 MB - java-11-openjdk-src-fastdebug-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: 7486ae1fcaa7f5b1bb8d23779f560b1c
SHA-256: 40f168e42a9715068eb69a8a4bebd45f5d727fd0db3b159aba14897e27f51704
Size: 49.70 MB - java-11-openjdk-src-slowdebug-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: 1bb172e35c1d4081a612169efe416a53
SHA-256: 6a9f6337e88e2c3de79631c3345ca83185e785db9742273e7cd8fd9f52803896
Size: 49.70 MB - java-11-openjdk-static-libs-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: 105116046a80aacea5ad0cbec3e4c707
SHA-256: 9218b899b3904ba2318af9423ca7b06d8492ee4f9c6ae0b26607a41355f87d62
Size: 31.64 MB - java-11-openjdk-static-libs-fastdebug-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: aa03cfe22ecdeb0bbb636d8508e0dc11
SHA-256: 0002794263a844dee755ad34f15857e6c71b0fff64c734f4a7a76466b45fcfb6
Size: 31.83 MB - java-11-openjdk-static-libs-slowdebug-11.0.21.0.9-2.el9.ML.1.x86_64.rpm
MD5: 7b5ab43415be47e3915aac3cc134f486
SHA-256: 5f755d86b9be1b046280a3dde1582509903f1405b5eefa80d54b6af04d1d92ba
Size: 28.54 MB