{"affected":[{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:HPE Helion OpenStack 8","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=HPE%20Helion%20OpenStack%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud 7","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20OpenStack%20Cloud%207"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud 8","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20OpenStack%20Cloud%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud 9","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20OpenStack%20Cloud%209"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud Crowbar 8","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20OpenStack%20Cloud%20Crowbar%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud Crowbar 9","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20OpenStack%20Cloud%20Crowbar%209"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 12 SP2","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP2"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 12 SP3","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 12 SP4","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 12 SP2-LTSS","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-LTSS"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 12 SP2-BCL","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP2-BCL"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 12 SP3-LTSS","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3-LTSS"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 12 SP3-BCL","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3-BCL"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 12 SP4-LTSS","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP4-LTSS"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 12 SP5","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 12 SP5","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"java-1_7_0-openjdk":"1.7.0.281-43.44.2","java-1_7_0-openjdk-demo":"1.7.0.281-43.44.2","java-1_7_0-openjdk-devel":"1.7.0.281-43.44.2","java-1_7_0-openjdk-headless":"1.7.0.281-43.44.2"}]},"package":{"ecosystem":"SUSE:Enterprise Storage 5","name":"java-1_7_0-openjdk","purl":"pkg:rpm/suse/java-1_7_0-openjdk&distro=SUSE%20Enterprise%20Storage%205"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.7.0.281-43.44.2"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"This update for java-1_7_0-openjdk fixes the following issues:\n\n- Update to 2.6.24 - OpenJDK 7u281 (October 2020 CPU, bsc#1177943)\n  * Security fixes\n    + JDK-8233624: Enhance JNI linkage\n    + JDK-8236862, CVE-2020-14779: Enhance support of Proxy class\n    + JDK-8237990, CVE-2020-14781: Enhanced LDAP contexts\n    + JDK-8237995, CVE-2020-14782: Enhance certificate processing\n    + JDK-8240124: Better VM Interning\n    + JDK-8241114, CVE-2020-14792: Better range handling\n    + JDK-8242680, CVE-2020-14796: Improved URI Support\n    + JDK-8242685, CVE-2020-14797: Better Path Validation\n    + JDK-8242695, CVE-2020-14798: Enhanced buffer support\n    + JDK-8243302: Advanced class supports\n    + JDK-8244136, CVE-2020-14803: Improved Buffer supports\n    + JDK-8244479: Further constrain certificates\n    + JDK-8244955: Additional Fix for JDK-8240124\n    + JDK-8245407: Enhance zoning of times\n    + JDK-8245412: Better class definitions\n    + JDK-8245417: Improve certificate chain handling\n    + JDK-8248574: Improve jpeg processing\n    + JDK-8249927: Specify limits of jdk.serialProxyInterfaceLimit\n    + JDK-8253019: Enhanced JPEG decoding\n  * Import of OpenJDK 7 u281 build 1\n    + JDK-8145096: Undefined behaviour in HotSpot\n    + JDK-8215265: C2: range check elimination may allow illegal\n      out of bound access\n  * Backports\n    + JDK-8250861, PR3812: Crash in MinINode::Ideal(PhaseGVN*, bool)\n","id":"SUSE-SU-2020:3310-1","modified":"2020-11-12T15:04:09Z","published":"2020-11-12T15:04:09Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2020/suse-su-20203310-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1177943"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14779"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14781"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14782"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14792"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14796"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14797"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14798"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14803"}],"related":["CVE-2020-14779","CVE-2020-14781","CVE-2020-14782","CVE-2020-14792","CVE-2020-14796","CVE-2020-14797","CVE-2020-14798","CVE-2020-14803"],"summary":"Security update for java-1_7_0-openjdk","upstream":["CVE-2020-14779","CVE-2020-14781","CVE-2020-14782","CVE-2020-14792","CVE-2020-14796","CVE-2020-14797","CVE-2020-14798","CVE-2020-14803"]}