RHSA-2021:4531: Important: OpenJDK 17.0.1 security update for Windows Builds
The OpenJDK 17 packages provide the OpenJDK 17 Java Runtime Environment and the OpenJDK 17 Java Software Development Kit.This release of the Red Hat build of OpenJDK 17 (17.0.1) for Windows serves as the initial Windows release of OpenJDK 17. For further information, refer to the release notes linked to in the References section.Security Fix(es): OpenJDK: Incorrect principal selection when using Kerberos Constrained Delegation (Libraries, 8266689) (CVE-2021-35567) OpenJDK: Excessive memory allocation in RTFParser (Swing, 8265167) (CVE-2021-35556) OpenJDK: Excessive memory allocation in RTFReader (Swing, 8265580) (CVE-2021-35559) OpenJDK: Excessive memory allocation in HashMap and HashSet (Utility, 8266097) (CVE-2021-35561) OpenJDK: Certificates with end dates too far in the future can corrupt keystore (Keytool, 8266137) (CVE-2021-35564) OpenJDK: Unexpected exception raised during TLS handshake (JSSE, 8267729) (CVE-2021-35578) OpenJDK: Excessive memory allocation in BMPImageReader (ImageIO, 8267735) (CVE-2021-35586) OpenJDK: Non-constant comparison during TLS handshakes (JSSE, 8269618) (CVE-2021-35603) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:4531?
RHSA-2021:4531 has a severity rating that warrants attention due to potential vulnerabilities in OpenJDK 17.
How do I fix RHSA-2021:4531?
To fix RHSA-2021:4531, upgrade to the latest version of the OpenJDK 17 packages provided by Red Hat.
What software is affected by RHSA-2021:4531?
RHSA-2021:4531 affects the OpenJDK 17 packages for Windows.
Is RHSA-2021:4531 related to security vulnerabilities?
Yes, RHSA-2021:4531 addresses security vulnerabilities identified in OpenJDK 17.
Where can I find more information about RHSA-2021:4531?
For more information about RHSA-2021:4531, refer to the official Red Hat advisory.