RHSA-2024:8128MediumCVSS 7.1
Red Hat Security Advisory: OpenJDK 21.0.5 Security Update for Portable Linux Builds
🔗 CVE IDs covered (5)
📋 Description
CVE-2023-48161 — giflib: Heap-Buffer Overflow during Image Saving in DumpScreen2RGB Function CVE-2024-21208 — JDK: HTTP client improper handling of maxHeaderSize (8328286) CVE-2024-21210 — JDK: Array indexing integer overflow (8328544) CVE-2024-21217 — JDK: Unbounded allocation leads to out-of-memory error (8331446) CVE-2024-21235 — JDK: Integer conversion error leads to incorrect range check (8332644)
🔗 References (8)
- selfhttps://access.redhat.com/errata/RHSA-2024:8128
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2251025
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2318524
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2318526
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2318530
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2318534
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_8128.json