• 公告ID (KylinSec-SA-2022-1937)

摘要:

openjdk-1.8.0 security update

安全等级: High

公告ID: KylinSec-SA-2022-1937

发布日期: 2022年8月10日

关联CVE: CVE-2021-35559   CVE-2021-35556   CVE-2021-35550   CVE-2021-35578   CVE-2022-21293   CVE-2022-21291   CVE-2022-21296   CVE-2022-21294   CVE-2022-21299   CVE-2022-21340   CVE-2022-21341   CVE-2022-21360   CVE-2021-35603   CVE-2022-21365   CVE-2021-35567   CVE-2021-35564   CVE-2021-35565   CVE-2021-35588   CVE-2022-21305   CVE-2021-35561   CVE-2021-35586   CVE-2022-21476   CVE-2022-21248   CVE-2022-21282  

  • 详细介绍

1. 漏洞描述

   

OpenJDK运行时环境8。

2. 影响范围

cve名称 产品 组件 是否受影响
CVE-2021-35559 KY3.4-4A openjdk-latest Fixed
CVE-2021-35559 KY3.4-5A openjdk-latest Fixed
CVE-2021-35559 KY3.5.1 openjdk-latest Fixed
CVE-2021-35556 KY3.4-4A openjdk-latest Fixed
CVE-2021-35556 KY3.4-5A openjdk-latest Fixed
CVE-2021-35556 KY3.5.1 openjdk-latest Fixed
CVE-2021-35550 KY3.4-4A openjdk-11 Fixed
CVE-2021-35550 KY3.4-5A openjdk-11 Fixed
CVE-2021-35550 KY3.5.1 openjdk-11 Fixed
CVE-2021-35578 KY3.4-4A openjdk-latest Fixed
CVE-2021-35578 KY3.4-5A openjdk-latest Fixed
CVE-2021-35578 KY3.5.1 openjdk-latest Fixed
CVE-2022-21293 KY3.4-4A openjdk-11 Fixed
CVE-2022-21293 KY3.4-5A openjdk-11 Fixed
CVE-2022-21293 KY3.5.1 openjdk-11 Fixed
CVE-2022-21291 KY3.4-4A openjdk-11 Fixed
CVE-2022-21291 KY3.4-5A openjdk-11 Fixed
CVE-2022-21291 KY3.5.1 openjdk-11 Fixed
CVE-2022-21296 KY3.4-4A openjdk-11 Fixed
CVE-2022-21296 KY3.4-5A openjdk-11 Fixed
CVE-2022-21296 KY3.5.1 openjdk-11 Fixed
CVE-2022-21294 KY3.4-4A openjdk-11 Fixed
CVE-2022-21294 KY3.4-5A openjdk-11 Fixed
CVE-2022-21294 KY3.5.1 openjdk-11 Fixed
CVE-2022-21299 KY3.4-4A openjdk-11 Fixed
CVE-2022-21299 KY3.4-5A openjdk-11 Fixed
CVE-2022-21299 KY3.5.1 openjdk-11 Fixed
CVE-2022-21340 KY3.4-4A openjdk-11 Fixed
CVE-2022-21340 KY3.4-5A openjdk-11 Fixed
CVE-2022-21340 KY3.5.1 openjdk-11 Fixed
CVE-2022-21341 KY3.4-4A openjdk-11 Fixed
CVE-2022-21341 KY3.4-5A openjdk-11 Fixed
CVE-2022-21341 KY3.5.1 openjdk-11 Fixed
CVE-2022-21360 KY3.4-4A openjdk-11 Fixed
CVE-2022-21360 KY3.4-5A openjdk-11 Fixed
CVE-2022-21360 KY3.5.1 openjdk-11 Fixed
CVE-2021-35603 KY3.4-4A openjdk-latest Fixed
CVE-2021-35603 KY3.4-5A openjdk-latest Fixed
CVE-2021-35603 KY3.5.1 openjdk-latest Fixed
CVE-2022-21365 KY3.4-4A openjdk-11 Fixed
CVE-2022-21365 KY3.4-5A openjdk-11 Fixed
CVE-2022-21365 KY3.5.1 openjdk-11 Fixed
CVE-2021-35567 KY3.4-4A openjdk-latest Fixed
CVE-2021-35567 KY3.4-5A openjdk-latest Fixed
CVE-2021-35567 KY3.5.1 openjdk-latest Fixed
CVE-2021-35564 KY3.4-4A openjdk-latest Fixed
CVE-2021-35564 KY3.4-5A openjdk-latest Fixed
CVE-2021-35564 KY3.5.1 openjdk-latest Fixed
CVE-2021-35565 KY3.4-4A openjdk-11 Fixed
CVE-2021-35565 KY3.4-5A openjdk-11 Fixed
CVE-2021-35565 KY3.5.1 openjdk-11 Fixed
CVE-2021-35588 KY3.4-4A openjdk-1.8.0 Fixed
CVE-2021-35588 KY3.4-5A openjdk-1.8.0 Fixed
CVE-2021-35588 KY3.5.1 openjdk-1.8.0 Fixed
CVE-2022-21305 KY3.4-4A openjdk-11 Fixed
CVE-2022-21305 KY3.4-5A openjdk-11 Fixed
CVE-2022-21305 KY3.5.1 openjdk-11 Fixed
CVE-2021-35561 KY3.4-4A openjdk-latest Fixed
CVE-2021-35561 KY3.4-5A openjdk-latest Fixed
CVE-2021-35561 KY3.5.1 openjdk-latest Fixed
CVE-2021-35586 KY3.4-4A openjdk-latest Fixed
CVE-2021-35586 KY3.4-5A openjdk-latest Fixed
CVE-2021-35586 KY3.5.1 openjdk-latest Fixed
CVE-2022-21476 KY3.4-4A openjdk-latest Fixed
CVE-2022-21476 KY3.4-5A openjdk-latest Fixed
CVE-2022-21476 KY3.5.1 openjdk-latest Fixed
CVE-2022-21248 KY3.4-4A openjdk-11 Fixed
CVE-2022-21248 KY3.4-5A openjdk-11 Fixed
CVE-2022-21248 KY3.5.1 openjdk-11 Fixed
CVE-2022-21282 KY3.4-4A openjdk-11 Fixed
CVE-2022-21282 KY3.4-5A openjdk-11 Fixed
CVE-2022-21282 KY3.5.1 openjdk-11 Fixed

3. 影响组件

    openjdk-1.8.0

4. 修复版本

   

KY3.5.1

软件名称 架构 版本号
java-1.8.0-openjdk-javadoc noarch 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-javadoc-zip noarch 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk x86_64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-demo x86_64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-headless x86_64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-openjfx-devel x86_64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-src x86_64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-accessibility x86_64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-openjfx x86_64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-devel x86_64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk aarch64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-headless aarch64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-openjfx aarch64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-accessibility aarch64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-src aarch64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-devel aarch64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-demo aarch64 1.8.0.342.b07-0.kb1.ky3_5
java-1.8.0-openjdk-openjfx-devel aarch64 1.8.0.342.b07-0.kb1.ky3_5

KY3.4-4A

软件名称 架构 版本号
java-1.8.0-openjdk-javadoc noarch 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-javadoc-zip noarch 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-devel x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-accessibility x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-headless x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-demo x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-openjfx x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-src x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-openjfx-devel x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-devel aarch64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-accessibility aarch64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-headless aarch64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-openjfx-devel aarch64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk aarch64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-openjfx aarch64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-src aarch64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-demo aarch64 1.8.0.342.b07-0.kb1.ky3_4

KY3.4-5A

软件名称 架构 版本号
java-1.8.0-openjdk-javadoc-zip noarch 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-javadoc noarch 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-accessibility x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-src x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-openjfx-devel x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-devel x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-headless x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-openjfx x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-demo x86_64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-demo aarch64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-openjfx-devel aarch64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-accessibility aarch64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-openjfx aarch64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-src aarch64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-devel aarch64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk aarch64 1.8.0.342.b07-0.kb1.ky3_4
java-1.8.0-openjdk-headless aarch64 1.8.0.342.b07-0.kb1.ky3_4

5. 修复方法


方法一:下载安装包进行升级安装
1、通过下载链接下载需要升级的升级包保存,如 xxx.rpm
2、通过rpm命令升级,如 rpm -Uvh xxx.rpm

方法二:通过软件源进行升级安装
1、保持能够连接上互联网
2、通过yum命令升级指定的包,如 yum install 包名

6. 下载链接

   

KY3.5.1:

x86_64:

     java-1.8.0-openjdk-javadoc   

     java-1.8.0-openjdk-javadoc-zip   

     java-1.8.0-openjdk   

     java-1.8.0-openjdk-demo   

     java-1.8.0-openjdk-headless   

     java-1.8.0-openjdk-openjfx-devel   

     java-1.8.0-openjdk-src   

     java-1.8.0-openjdk-accessibility   

     java-1.8.0-openjdk-openjfx   

     java-1.8.0-openjdk-devel   

aarch64:

     java-1.8.0-openjdk-javadoc   

     java-1.8.0-openjdk-javadoc-zip   

     java-1.8.0-openjdk   

     java-1.8.0-openjdk-headless   

     java-1.8.0-openjdk-openjfx   

     java-1.8.0-openjdk-accessibility   

     java-1.8.0-openjdk-src   

     java-1.8.0-openjdk-devel   

     java-1.8.0-openjdk-demo   

     java-1.8.0-openjdk-openjfx-devel   

KY3.4-4A:

x86_64:

     java-1.8.0-openjdk-javadoc   

     java-1.8.0-openjdk-javadoc-zip   

     java-1.8.0-openjdk-devel   

     java-1.8.0-openjdk-accessibility   

     java-1.8.0-openjdk-headless   

     java-1.8.0-openjdk-demo   

     java-1.8.0-openjdk-openjfx   

     java-1.8.0-openjdk-src   

     java-1.8.0-openjdk   

     java-1.8.0-openjdk-openjfx-devel   

aarch64:

     java-1.8.0-openjdk-javadoc   

     java-1.8.0-openjdk-javadoc-zip   

     java-1.8.0-openjdk-devel   

     java-1.8.0-openjdk-accessibility   

     java-1.8.0-openjdk-headless   

     java-1.8.0-openjdk-openjfx-devel   

     java-1.8.0-openjdk   

     java-1.8.0-openjdk-openjfx   

     java-1.8.0-openjdk-src   

     java-1.8.0-openjdk-demo   

KY3.4-5A:

x86_64:

     java-1.8.0-openjdk-javadoc-zip   

     java-1.8.0-openjdk-javadoc   

     java-1.8.0-openjdk-accessibility   

     java-1.8.0-openjdk-src   

     java-1.8.0-openjdk-openjfx-devel   

     java-1.8.0-openjdk-devel   

     java-1.8.0-openjdk-headless   

     java-1.8.0-openjdk-openjfx   

     java-1.8.0-openjdk   

     java-1.8.0-openjdk-demo   

aarch64:

     java-1.8.0-openjdk-javadoc-zip   

     java-1.8.0-openjdk-javadoc   

     java-1.8.0-openjdk-demo   

     java-1.8.0-openjdk-openjfx-devel   

     java-1.8.0-openjdk-accessibility   

     java-1.8.0-openjdk-openjfx   

     java-1.8.0-openjdk-src   

     java-1.8.0-openjdk-devel   

     java-1.8.0-openjdk   

     java-1.8.0-openjdk-headless   

上一篇:KylinSec-SA-2022-1936 下一篇:KylinSec-SA-2022-1938