CLSA-2024-1723623068

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json
JSON Data
https://api.test.osv.dev/v1/vulns/CLSA-2024-1723623068
Upstream
Published
2024-08-14T08:11:11Z
Modified
2026-05-27T11:18:23.092270483Z
Summary
java-1.8.0-openjdk: Fix of 6 CVEs
Details
  • Upgrade to openjdk-shenandoah-jdk8u-shenandoah-jdk8u422-b05. That fixes following CVEs:
  • CVE-2024-21131: UTF8 size overflow
  • CVE-2024-21138: Infinite loop vunlerability in SymbolTable
  • CVE-2024-21140: Int overflow/underflow in Range Check Elimination (RCE)
  • CVE-2024-21144: Invalid header validation leads to Pack200 excessive loading time
  • CVE-2024-21145: Out-of-bounds access in MaskFill
  • CVE-2024-21147: Out-of-bounds array index in Range Check Elimination (RCE)
References

Affected packages

TuxCare:CentOS:7
java-1.8.0-openjdk

Package

Name
java-1.8.0-openjdk
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-accessibility

Package

Name
java-1.8.0-openjdk-accessibility
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-accessibility?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-accessibility-debug

Package

Name
java-1.8.0-openjdk-accessibility-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-accessibility-debug?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-debug

Package

Name
java-1.8.0-openjdk-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-debug?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-demo

Package

Name
java-1.8.0-openjdk-demo
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-demo?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-demo-debug

Package

Name
java-1.8.0-openjdk-demo-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-demo-debug?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-devel

Package

Name
java-1.8.0-openjdk-devel
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-devel?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-devel-debug

Package

Name
java-1.8.0-openjdk-devel-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-devel-debug?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-headless

Package

Name
java-1.8.0-openjdk-headless
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-headless?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-headless-debug

Package

Name
java-1.8.0-openjdk-headless-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-headless-debug?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-javadoc

Package

Name
java-1.8.0-openjdk-javadoc
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-javadoc?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-javadoc-debug

Package

Name
java-1.8.0-openjdk-javadoc-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-javadoc-debug?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-javadoc-zip

Package

Name
java-1.8.0-openjdk-javadoc-zip
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-javadoc-zip?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-javadoc-zip-debug

Package

Name
java-1.8.0-openjdk-javadoc-zip-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-javadoc-zip-debug?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-src

Package

Name
java-1.8.0-openjdk-src
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-src?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"
java-1.8.0-openjdk-src-debug

Package

Name
java-1.8.0-openjdk-src-debug
Purl
pkg:rpm/tuxcare/java-1.8.0-openjdk-src-debug?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:1.8.0.422.b05-1.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1723623068.json"