Advisories ยป MGASA-2024-0179

Updated java-1.8.0, java-11, java-17, java-latest packages fix security vulnerabilities

Publication date: 16 May 2024
Modification date: 16 May 2024
Type: security
Affected Mageia releases : 9
CVE: CVE-2024-21011 , CVE-2024-21012 , CVE-2024-21085 , CVE-2024-21068 , CVE-2024-21094

Description

Long Exception message leading to crash. (CVE-2024-21011)
HTTP/2 client improper reverse DNS lookup. (CVE-2024-21012)
Integer overflow in C1 compiler address generation. (CVE-2024-21068)
Pack200 excessive memory allocation. (CVE-2024-21085)
C2 compilation fails with "Exceeded _node_regs array". (CVE-2024-21094)
                

References

SRPMS

9/core